google / osv-scannerLinks
Vulnerability scanner written in Go which uses the data provided by https://osv.dev
☆7,965Updated this week
Alternatives and similar repositories for osv-scanner
Users that are interested in osv-scanner are comparing it to the libraries listed below
Sorting:
- Open source vulnerability DB and triage service.☆2,352Updated this week
 - A vulnerability scanner for container images and filesystems☆10,915Updated this week
 - CLI tool and library for generating a Software Bill of Materials from container images and filesystems☆7,877Updated this week
 - Code security scanning tool (SAST) to discover, filter and prioritize security and privacy risks.☆2,434Updated this week
 - Wazuh - The Open Source Security Platform. Unified XDR and SIEM protection for endpoints and cloud workloads.☆13,809Updated this week
 - Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more☆29,550Updated last week
 - Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.☆2,024Updated this week
 - Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabl…☆25,282Updated this week
 - Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.☆13,173Updated last week
 - Real-time HTTP Intrusion Detection☆3,071Updated last year
 - Dependency-Track is an intelligent Component Analysis platform that allows organizations to identify and reduce risk in the software supp…☆3,308Updated last week
 - Code signing and transparency for containers and binaries☆5,341Updated last week
 - Vulnerability Static Analysis for Containers☆10,836Updated last week
 - Cloud Native Runtime Security☆8,356Updated this week
 - Find security vulnerabilities, compliance issues, and infrastructure misconfigurations early in the development cycle of your infrastruct…☆2,498Updated this week
 - The API traffic analyzer for Kubernetes providing real-time K8s protocol-level visibility, capturing and monitoring all traffic and paylo…☆11,533Updated last month
 - httpx is a fast and multi-purpose HTTP toolkit that allows running multiple probes using the retryablehttp library.☆9,130Updated this week
 - A fast port scanner written in go with a focus on reliability and simplicity. Designed to be used in combination with other tools for att…☆5,490Updated last week
 - Agent-less vulnerability scanner for Linux, FreeBSD, Container, WordPress, Programming language libraries, Network devices☆11,774Updated last week
 - Fast passive subdomain enumeration tool.☆12,465Updated last week
 - OWASP dependency-check is a software composition analysis utility that detects publicly disclosed vulnerabilities in application dependen…☆7,267Updated last week
 - OWASP dep-scan is a next-generation security and risk audit tool based on known vulnerabilities, advisories, and license limitations for …☆1,176Updated 3 weeks ago
 - OWASP Coraza WAF is a golang modsecurity compatible web application firewall library☆3,031Updated this week
 - An HTTP toolkit for security research.☆8,953Updated 8 months ago
 - Community curated list of templates for the nuclei engine to find security vulnerabilities.☆11,245Updated this week
 - A next-generation crawling and spidering framework.☆14,354Updated last week
 - Official repository vuls Scan: 15000+PoCs; 23 kinds of application password crack; 7000+Web fingerprints; 146 protocols and 90000+ rules…☆5,894Updated last year
 - Nosey Parker is a command-line tool that finds secrets and sensitive information in textual data and Git history.☆2,145Updated last week
 - Vulnerability Intelligence Platform☆2,302Updated 3 weeks ago
 - Find secrets with Gitleaks 🔑☆23,779Updated last week