All Projects → Grype → Similar Projects or Alternatives

1597 Open source projects that are alternatives of or similar to Grype

Syft
CLI tool and library for generating a Software Bill of Materials from container images and filesystems
Stars: ✭ 196 (-45.86%)
Mutual labels:  static-analysis, tool, containers, oci
Clair
Vulnerability Static Analysis for Containers
Stars: ✭ 8,356 (+2208.29%)
Anchore Engine
A service that analyzes docker images and applies user-defined acceptance policies to allow automated container image validation and certification
Stars: ✭ 1,192 (+229.28%)
Hacking
hacker, ready for more of our story ! 🚀
Stars: ✭ 413 (+14.09%)
Mutual labels:  vulnerability, vulnerabilities, tool
Rkt
[Project ended] rkt is a pod-native container engine for Linux. It is composable, secure, and built on standards.
Stars: ✭ 8,870 (+2350.28%)
Mutual labels:  containers, oci
Crun
A fast and lightweight fully featured OCI runtime and C library for running containers
Stars: ✭ 990 (+173.48%)
Mutual labels:  containers, oci
Go Digest
Common digest package used across the container ecosystem
Stars: ✭ 99 (-72.65%)
Mutual labels:  containers, oci
Wssat
WEB SERVICE SECURITY ASSESSMENT TOOL
Stars: ✭ 360 (-0.55%)
Mutual labels:  static-analysis, vulnerabilities
Runtime Spec
OCI Runtime Specification
Stars: ✭ 2,316 (+539.78%)
Mutual labels:  containers, oci
Runj
runj is an experimental, proof-of-concept OCI-compatible runtime for FreeBSD jails.
Stars: ✭ 211 (-41.71%)
Mutual labels:  containers, oci
Tern
Tern is a software composition analysis tool and Python library that generates a Software Bill of Materials for container images and Dockerfiles. The SBoM that Tern generates will give you a layer-by-layer view of what's inside your container in a variety of formats including human-readable, JSON, HTML, SPDX and more.
Stars: ✭ 505 (+39.5%)
Mutual labels:  tool, containers
Tectonic Installer
Install a Kubernetes cluster the CoreOS Tectonic Way: HA, self-hosted, RBAC, etcd Operator, and more
Stars: ✭ 599 (+65.47%)
Mutual labels:  containers, oci
Distribution
The toolkit to pack, ship, store, and deliver container content
Stars: ✭ 6,445 (+1680.39%)
Mutual labels:  containers, oci
Firecracker Containerd
firecracker-containerd enables containerd to manage containers as Firecracker microVMs
Stars: ✭ 1,130 (+212.15%)
Mutual labels:  containers, oci
Runc
CLI tool for spawning and running containers according to the OCI specification
Stars: ✭ 8,729 (+2311.33%)
Mutual labels:  containers, oci
Gvisor
Application Kernel for Containers
Stars: ✭ 12,012 (+3218.23%)
Mutual labels:  containers, oci
Orca Build
Build OCI images from Dockerfiles.
Stars: ✭ 159 (-56.08%)
Mutual labels:  containers, oci
Containership
A simple container management platform
Stars: ✭ 241 (-33.43%)
Mutual labels:  containers, oci
Image Spec
OCI Image Format
Stars: ✭ 1,851 (+411.33%)
Mutual labels:  containers, oci
Dockle
Container Image Linter for Security, Helping build the Best-Practice Docker Image, Easy to start
Stars: ✭ 1,713 (+373.2%)
Mutual labels:  vulnerability, containers
Umoci
umoci modifies Open Container images
Stars: ✭ 349 (-3.59%)
Mutual labels:  containers, oci
Wprecon
WPrecon (WordPress Recon), is a vulnerability recognition tool in CMS Wordpress, developed in Go and with scripts in Lua.
Stars: ✭ 135 (-62.71%)
Mutual labels:  vulnerability, tool
Dagda
a tool to perform static analysis of known vulnerabilities, trojans, viruses, malware & other malicious threats in docker images/containers and to monitor the docker daemon and running docker containers for detecting anomalous activities
Stars: ✭ 820 (+126.52%)
Mutual labels:  static-analysis, vulnerabilities
Trivy
Scanner for vulnerabilities in container images, file systems, and Git repositories, as well as for configuration issues
Stars: ✭ 9,673 (+2572.1%)
Mutual labels:  vulnerability, containers
Vulnix
Vulnerability (CVE) scanner for Nix/NixOS.
Stars: ✭ 161 (-55.52%)
Mutual labels:  vulnerability, vulnerabilities
Securify2
Securify v2.0
Stars: ✭ 92 (-74.59%)
Mutual labels:  static-analysis, vulnerability
Runtime
OCI (Open Containers Initiative) compatible runtime using Virtual Machines
Stars: ✭ 588 (+62.43%)
Mutual labels:  containers, oci
Pouch
An Efficient Enterprise-class Container Engine
Stars: ✭ 4,483 (+1138.4%)
Mutual labels:  containers, oci
Runv
Hypervisor-based Runtime for OCI
Stars: ✭ 798 (+120.44%)
Mutual labels:  containers, oci
Cc Oci Runtime
OCI (Open Containers Initiative) compatible runtime for Intel® Architecture
Stars: ✭ 418 (+15.47%)
Mutual labels:  containers, oci
Containerd
An open and reliable container runtime
Stars: ✭ 9,956 (+2650.28%)
Mutual labels:  containers, oci
Kata Containers
Kata Containers version 2.x repository. Kata Containers is an open source project and community working to build a standard implementation of lightweight Virtual Machines (VMs) that feel and perform like containers, but provide the workload isolation and security advantages of VMs. https://katacontainers.io/
Stars: ✭ 1,053 (+190.88%)
Mutual labels:  containers, oci
Artifacts
OCI Artifacts
Stars: ✭ 84 (-76.8%)
Mutual labels:  containers, oci
scan-cli-plugin
Docker Scan is a Command Line Interface to run vulnerability detection on your Dockerfiles and Docker images
Stars: ✭ 135 (-62.71%)
Mutual labels:  vulnerability, vulnerabilities
Jib
🏗 Build container images for your Java applications.
Stars: ✭ 11,370 (+3040.88%)
Mutual labels:  containers, oci
Ignite
Ignite a Firecracker microVM
Stars: ✭ 1,954 (+439.78%)
Mutual labels:  containers, oci
Image Tools
OCI Image Tooling
Stars: ✭ 167 (-53.87%)
Mutual labels:  containers, oci
Selinux
common selinux implementation
Stars: ✭ 107 (-70.44%)
Mutual labels:  containers, oci
Box
A mruby-based Builder for Docker Images
Stars: ✭ 236 (-34.81%)
Mutual labels:  containers, oci
Runtime
Kata Containers version 1.x runtime (for version 2.x see https://github.com/kata-containers/kata-containers).
Stars: ✭ 2,103 (+480.94%)
Mutual labels:  containers, oci
Distribution Spec
OCI Distribution Specification
Stars: ✭ 250 (-30.94%)
Mutual labels:  containers, oci
Gowapt
Go Web Application Penetration Test
Stars: ✭ 300 (-17.13%)
Mutual labels:  vulnerability, tool
Thoron
Thoron Framework is a Linux post-exploitation framework that exploits Linux TCP vulnerability to provide a shell-like connection. Thoron Framework has the ability to create simple payloads to provide Linux TCP attack.
Stars: ✭ 87 (-75.97%)
Mutual labels:  vulnerability, vulnerabilities
In Spectre Meltdown
This tool allows to check speculative execution side-channel attacks that affect many modern processors and operating systems designs. CVE-2017-5754 (Meltdown) and CVE-2017-5715 (Spectre) allows unprivileged processes to steal secrets from privileged processes. These attacks present 3 different ways of attacking data protection measures on CPUs enabling attackers to read data they shouldn't be able to. This tool is originally based on Microsoft: https://support.microsoft.com/en-us/help/4073119/protect-against-speculative-execution-side-channel-vulnerabilities-in
Stars: ✭ 86 (-76.24%)
Mutual labels:  vulnerability, tool
Arissploit
Arissploit Framework is a simple framework designed to master penetration testing tools. Arissploit Framework offers simple structure, basic CLI, and useful features for learning and developing penetration testing tools.
Stars: ✭ 114 (-68.51%)
Mutual labels:  vulnerability, vulnerabilities
Hacker ezines
A collection of electronic hacker magazines carefully curated over the years from multiple sources
Stars: ✭ 72 (-80.11%)
Mutual labels:  vulnerability, vulnerabilities
Brakeman
A static analysis security vulnerability scanner for Ruby on Rails applications
Stars: ✭ 6,281 (+1635.08%)
Mutual labels:  static-analysis, vulnerabilities
Huskyci
Performing security tests inside your CI
Stars: ✭ 398 (+9.94%)
Mutual labels:  static-analysis, vulnerabilities
clair-cicd
Making CoreOS' Clair easily work in CI/CD pipelines
Stars: ✭ 27 (-92.54%)
Mutual labels:  static-analysis, vulnerabilities
Jaadas
Joint Advanced Defect assEsment for android applications
Stars: ✭ 304 (-16.02%)
Mutual labels:  static-analysis, vulnerability
Vehicle-Security-Toolkit
汽车/安卓/固件/代码安全测试工具集
Stars: ✭ 367 (+1.38%)
Mutual labels:  static-analysis, vulnerability
Vulny Code Static Analysis
Python script to detect vulnerabilities inside PHP source code using static analysis, based on regex
Stars: ✭ 207 (-42.82%)
Mutual labels:  static-analysis, vulnerabilities
Horusec
Horusec is an open source tool that improves identification of vulnerabilities in your project with just one command.
Stars: ✭ 311 (-14.09%)
Mutual labels:  static-analysis, vulnerabilities
Sbt Dependency Check
SBT Plugin for OWASP DependencyCheck. Monitor your dependencies and report if there are any publicly known vulnerabilities (e.g. CVEs). 🌈
Stars: ✭ 187 (-48.34%)
Mutual labels:  static-analysis, vulnerabilities
Dockerfile
Dockerfile best-practices for writing production-worthy Docker images.
Stars: ✭ 3,506 (+868.51%)
Mutual labels:  containers, oci
Buildkit
concurrent, cache-efficient, and Dockerfile-agnostic builder toolkit
Stars: ✭ 4,537 (+1153.31%)
Mutual labels:  containers, oci
Fileboy
fileboy,文件变更监听通知工具,使用 Go 编写。Fileboy, File Change Monitoring Notification Tool, written with Go.
Stars: ✭ 345 (-4.7%)
Mutual labels:  tool
Tsuru
Open source and extensible Platform as a Service (PaaS).
Stars: ✭ 3,761 (+938.95%)
Mutual labels:  containers
Rbndr
Simple DNS Rebinding Service
Stars: ✭ 343 (-5.25%)
Mutual labels:  vulnerability
Codecompass
CodeCompass is a software comprehension tool for large scale software written in C/C++ and Java
Stars: ✭ 342 (-5.52%)
Mutual labels:  static-analysis
1-60 of 1597 similar projects