vilicus

Container vulnerability scanner

An open-source tool that orchestrates security scans of container images and centralizes the results into a database for analysis and metrics.

Vilicus is an open source tool that orchestrates security scans of container images(docker/oci) and centralizes all results into a database for further analysis and metrics.

GitHub

85 stars
5 watching
8 forks
Language: SCSS
last commit: almost 2 years ago
Linked from 1 awesome list

anchorecicdclairdockerdocker-imagedocker-scannergolangocioci-imageoci-scannerscan-imagessecuritysecurity-scannersecurity-toolssecurity-vulnerabilitytrivyvilicus

Backlinks from these awesome lists:

Related projects:

Repository Description Stars
twelvesec/rootend A tool designed to automate the discovery and exploitation of security vulnerabilities in Unix systems. 146
aquasecurity/trivy-action Automates vulnerability scanning of Docker images using Trivy 848
eliasgranderubio/dagda A tool to analyze and monitor Docker images and containers for security threats 1,164
cve-search/git-vuln-finder Automates CVE vulnerability detection from Git commit messages 402
nccgroup/whalescan A vulnerability scanner for Windows containers that performs benchmark checks and checks for CVEs/vulnerable packages on the container. 154
kost/dockscan Automated vulnerability scanner for Docker installations 220
tomwillfixit/alpine-cvecheck Automates vulnerability scanning of Docker images at build time 10
teamssix/container-escape-check Detects potential vulnerabilities in Docker containers by checking for common escape methods 560
osamahamad/cve-2020-9484-mass-scan A tool designed to scan a list of URLs against Apache Tomcat deserialization vulnerabilities that could lead to Remote Code Execution. 32
hasecuritysolutions/vulnwhisperer Automates vulnerability scanning and reporting by integrating multiple scanners into a unified platform 1,362
phonito/phonito-scanner-action Automates vulnerability scanning of Docker images for security and compliance. 31
checkmarx/kics A tool for detecting security vulnerabilities and compliance issues in infrastructure-as-code projects 2,117
portswigger/backslash-powered-scanner An extension for Burp Suite that scans for unknown classes of injection vulnerabilities using a novel approach 643
portswigger/httpoxy-scanner Tools to help identify vulnerabilities in web applications using HTTPoxy scanning. 90
openscanner/xguardian A security scanner for OSX applications that detects potential vulnerabilities in URL scheme hijack, bundle ID hijack, and keychain hijack. 41