docker-bench-security

Security scanner

Automated security testing and benchmarking tool for Docker containers in production environments.

The Docker Bench for Security is a script that checks for dozens of common best-practices around deploying Docker containers in production. https://dockerbench.com

GitHub

21 stars
5 watching
3 forks
Language: Shell
last commit: over 9 years ago
Linked from 1 awesome list


Backlinks from these awesome lists:

Related projects:

Repository Description Stars
eliasgranderubio/dagda A tool to analyze and monitor Docker images and containers for security threats 1,164
zubux/drydock Tools for assessing Docker daemon configuration and container security 65
phonito/phonito-scanner-action Automates vulnerability scanning of Docker images for security and compliance. 31
dev-sec/cis-docker-benchmark A tool for automating security audits of Docker environments 490
kost/dockscan Automated vulnerability scanner for Docker installations 220
owasp/docker-security A guide to building secure containerized environments using Docker 635
docker-forensics-toolkit/toolkit A toolkit for analyzing Docker containers from forensic images of host systems 95
aoncyberlabs/docker-secure-deployment-guidelines A comprehensive guide to securing Docker deployments 605
genuinetools/reg Tools and utilities for managing and securing Docker registries. 1,664
teamssix/container-escape-check Detects potential vulnerabilities in Docker containers by checking for common escape methods 560
harisekhon/dockerfiles A collection of reusable Docker images for various software development and DevOps tools and technologies 1,318
nccgroup/whalescan A vulnerability scanner for Windows containers that performs benchmark checks and checks for CVEs/vulnerable packages on the container. 154
mag37/dockcheck Automates Docker image updates with selective downloads and notifications. 1,132
aaaguirrep/offensive-docker A Docker image with pre-installed tools for creating and running penetration testing environments. 732
diogo-fernan/ir-rescue A tool for comprehensively collecting host forensic data during incident response and analysis. 466