docker-bench-security

Security scanner

Automated security testing and benchmarking tool for Docker containers in production environments.

The Docker Bench for Security is a script that checks for dozens of common best-practices around deploying Docker containers in production. https://dockerbench.com

GitHub

21 stars
5 watching
3 forks
Language: Shell
last commit: over 9 years ago
Linked from 1 awesome list


Backlinks from these awesome lists:

Related projects:

Repository Description Stars
eliasgranderubio/dagda A tool to analyze and monitor Docker images and containers for security threats 1,161
zubux/drydock Tools for assessing Docker daemon configuration and container security 65
phonito/phonito-scanner-action Automates vulnerability scanning of Docker images for security and compliance. 31
dev-sec/cis-docker-benchmark A tool for automating security audits of Docker environments 488
kost/dockscan Automated vulnerability scanner for Docker installations 218
owasp/docker-security A guide to building secure containerized environments using Docker 633
docker-forensics-toolkit/toolkit A toolkit for analyzing Docker containers from forensic images of host systems 94
aoncyberlabs/docker-secure-deployment-guidelines A comprehensive guide to securing Docker deployments 604
genuinetools/reg Tools and utilities for managing and securing Docker registries. 1,661
teamssix/container-escape-check Detects potential vulnerabilities in Docker containers by checking for common escape methods 558
harisekhon/dockerfiles A collection of reusable Docker images for various software development and DevOps tools and technologies 1,314
nccgroup/whalescan A vulnerability scanner for Windows containers that performs benchmark checks and checks for CVEs/vulnerable packages on the container. 153
mag37/dockcheck Automates Docker image updates with selective downloads and notifications. 1,121
aaaguirrep/offensive-docker A Docker image with pre-installed tools for creating and running penetration testing environments. 729
diogo-fernan/ir-rescue A tool for comprehensively collecting host forensic data during incident response and analysis. 466