terrascan
Security scanner
Detects security vulnerabilities and compliance issues in infrastructure code before provisioning cloud-native infrastructure.
Detect compliance and security violations across Infrastructure as Code to mitigate risk before provisioning cloud native infrastructure.
5k stars
69 watching
504 forks
Language: Go
last commit: 11 months ago
Linked from 4 awesome lists
architectureawsaws-securityazure-securitycloud-securitycloudsecuritydevopsdevsecopsgcp-securityiacinfrastructureinfrastructure-as-codekubernetessastscanssecuritysecurity-toolssecurity-violationsterraformterrascan
Related projects:
| Repository | Description | Stars |
|---|---|---|
| | A tool for identifying potential misconfigurations in Terraform code during the software development process | 6,734 |
| | A toolchain that scans source code and infrastructure IaC for security risks and provides a unified report. | 831 |
| | An automated tool suite to assess and improve cloud security across multiple platforms | 1,145 |
| | Automates vulnerability detection and remediation across GitHub and GitLab assets to strengthen software security posture. | 782 |
| | A tool for detecting security vulnerabilities and compliance issues in infrastructure-as-code projects | 2,117 |
| | An automated tool for identifying security and compliance vulnerabilities in cloud infrastructure and software packages. | 7,214 |
| | A security scanner for OSX applications that detects potential vulnerabilities in URL scheme hijack, bundle ID hijack, and keychain hijack. | 41 |
| | An application protection platform that monitors and analyzes cloud-native applications for vulnerabilities and threats. | 4,861 |
| | A multi-cloud deployment tool designed to test and demonstrate the vulnerability of cloud infrastructure configurations | 541 |
| | Automated tool to detect security vulnerabilities in Istio clusters by analyzing configuration and audit best practices | 173 |
| | Identifies web app endpoints and parameters to help detect vulnerabilities | 98 |
| | Identifies security flaws in software projects through static code analysis | 1,154 |
| | An open-source tool that evaluates AWS CloudFormation templates against sustainability best practices and generates reports with suggested improvements. | 110 |
| | Detects misconfigurations and vulnerabilities in software supply chains during build pipelines. | 239 |
| | Graph-based security analysis platform | 337 |