vilicus

Container vulnerability scanner

An open-source tool that orchestrates security scans of container images and centralizes the results into a database for analysis and metrics.

Vilicus is an open source tool that orchestrates security scans of container images(docker/oci) and centralizes all results into a database for further analysis and metrics.

GitHub

85 stars
5 watching
8 forks
Language: SCSS
last commit: over 3 years ago
Linked from 1 awesome list

anchorecicdclairdockerdocker-imagedocker-scannergolangocioci-imageoci-scannerscan-imagessecuritysecurity-scannersecurity-toolssecurity-vulnerabilitytrivyvilicus

Backlinks from these awesome lists:

Related projects:

RepositoryDescriptionStars
twelvesec/rootendA tool designed to automate the discovery and exploitation of security vulnerabilities in Unix systems.147
aquasecurity/trivy-actionAutomates vulnerability scanning of Docker images using Trivy848
eliasgranderubio/dagdaA tool to analyze and monitor Docker images and containers for security threats1,164
cve-search/git-vuln-finderAutomates CVE vulnerability detection from Git commit messages402
nccgroup/whalescanA vulnerability scanner for Windows containers that performs benchmark checks and checks for CVEs/vulnerable packages on the container.154
kost/dockscanAutomated vulnerability scanner for Docker installations220
tomwillfixit/alpine-cvecheckAutomates vulnerability scanning of Docker images at build time10
teamssix/container-escape-checkDetects potential vulnerabilities in Docker containers by checking for common escape methods560
osamahamad/cve-2020-9484-mass-scanA tool designed to scan a list of URLs against Apache Tomcat deserialization vulnerabilities that could lead to Remote Code Execution.32
hasecuritysolutions/vulnwhispererAutomates vulnerability scanning and reporting by integrating multiple scanners into a unified platform1,362
phonito/phonito-scanner-actionAutomates vulnerability scanning of Docker images for security and compliance.31
checkmarx/kicsA tool for detecting security vulnerabilities and compliance issues in infrastructure-as-code projects2,117
portswigger/backslash-powered-scannerAn extension for Burp Suite that scans for unknown classes of injection vulnerabilities using a novel approach643
portswigger/httpoxy-scannerTools to help identify vulnerabilities in web applications using HTTPoxy scanning.90
openscanner/xguardianA security scanner for OSX applications that detects potential vulnerabilities in URL scheme hijack, bundle ID hijack, and keychain hijack.41