openclarity / vmclarity
VMClarity is a tool for agentless detection and management of Virtual Machine Software Bill Of Materials (SBOM) and vulnerabilities
☆101Updated last month
Related projects ⓘ
Alternatives and complementary repositories for vmclarity
- Kubernetes audit logging, when you don't control the control plane☆65Updated this week
- Response Engine for managing threats in your Kubernetes☆131Updated this week
- Supporting code and demos for KubeCon EU 2023 talk "Malicious Compliance: Reflections on Trusting Container Image Scanners"☆66Updated 11 months ago
- Runtime detection and response for malicious events in Kubernetes workloads☆38Updated 8 months ago
- A replacement for "kubectl exec" that works over WebSocket connections.☆35Updated 7 months ago
- BadRobot - Operator Security Audit Tool☆215Updated this week
- Falco plugins registry☆86Updated this week
- Catalogue all images of a Kubernetes cluster to multiple targets with Syft☆194Updated this week
- KBOM - Kubernetes Bill of Materials☆307Updated 3 weeks ago
- Runtime security plug to protect user containers☆65Updated this week
- The regolibrary package contains the controls Kubescape uses for detecting misconfigurations in Kubernetes manifests.☆121Updated this week
- OWASP Kubernetes security and compliance tool [WIP]☆104Updated last year
- Inspect certificate authorities in container images☆228Updated 6 months ago
- This repo. is archived. The utility is now at: https://github.com/CycloneDX/sbom-utility☆61Updated last year
- a tool to audit the istio service mesh☆173Updated 3 years ago
- ☆91Updated 6 months ago
- 🧰 Multi Tool Kubernetes Pentest Image☆215Updated 2 months ago
- Falco rule repository☆96Updated 3 weeks ago
- ☆15Updated 4 months ago
- KubeStalk discovers Kubernetes and related infrastructure based attack surface from a black-box perspective.☆167Updated last year
- Scans SBOMs for vulnerabilities with Grype☆79Updated this week
- ☆168Updated last month
- Open Source runtime scanner for k8s cluster and perform security audit checks based on CIS Kubernetes Benchmark specification☆65Updated 3 months ago
- Notice: Postee is no longer under active development or maintenance.☆211Updated last month
- Curating Falco rules with MITRE ATT&CK Matrix☆74Updated 8 months ago
- Threat Modeling (based on STRIDE approach) for Kubernetes systems.☆20Updated last month
- NamespaceHound is the tool for detecting the risk of potential namespace crossing violations in multi-tenant clusters.☆59Updated 8 months ago
- A collection of tools to improve your containerized apps security posture☆131Updated 5 months ago
- A VS Code Extension for Trivy☆115Updated last year
- in-toto is a framework to secure the software supply chain.☆69Updated 2 weeks ago