chenk's repositories

kube-beacon

Open Source runtime scanner for k8s cluster and perform security audit checks based on CIS Kubernetes Benchmark specification

Language:GoLicense:Apache-2.0Stargazers:64Issues:3Issues:7

mesh-kridik

mesh-kridik is an open-source security checker that performs various security checks on a Kubernetes cluster with istio service mesh and is leveraged by OPA (Open Policy Agent) to enforce security rules.

Language:GoLicense:Apache-2.0Stargazers:25Issues:2Issues:19

lxd-probe

Open Source runtime scanner for Linux containers (LXD / LXC), It performs security audit checks based on CIS Linux containers Benchmark specification

Language:GoLicense:Apache-2.0Stargazers:22Issues:2Issues:5

go-archive-extractor

open source lib for extracting most common archives with diffrents compressions

Language:GoLicense:Apache-2.0Stargazers:5Issues:1Issues:3

go-command-eval

Go-command-eval is an open-source which helps to execute a shell command and evaluate it results in a flexible ways

Language:GoLicense:Apache-2.0Stargazers:3Issues:2Issues:2

go-license-discovery

The license discovery is an open-source lib and set of tools that can analyze license text to determine what type of license it contains.

Language:GoLicense:Apache-2.0Stargazers:3Issues:1Issues:0

go-simple-config

open source for accessing and storing configuration

Language:GoLicense:Apache-2.0Stargazers:3Issues:2Issues:1

trivy-operator

Kubernetes-native security toolkit

Language:GoLicense:Apache-2.0Stargazers:1Issues:0Issues:0
Language:GoLicense:MITStargazers:0Issues:1Issues:0

bench-common

Common code for hardening benchmarks

Language:GoLicense:Apache-2.0Stargazers:0Issues:1Issues:0

community-operators

The canonical source for Kubernetes Operators that are published on OperatorHub.io and part of the default catalog of the Operator Lifecycle Manager.

Language:DockerfileLicense:Apache-2.0Stargazers:0Issues:1Issues:0
Language:GoLicense:Apache-2.0Stargazers:0Issues:0Issues:0

defsec

DefSec is a collection of Infrastructure-as-Code rules.

Language:GoLicense:MITStargazers:0Issues:1Issues:0

harbor-scanner-trivy

Use Trivy as a plug-in vulnerability scanner in the Harbor registry

Language:GoLicense:Apache-2.0Stargazers:0Issues:0Issues:0

helm-charts

Aqua Open Source Helm Chart Repository

License:Apache-2.0Stargazers:0Issues:1Issues:0

helm-versions

collect helm version from artifact hub

License:Apache-2.0Stargazers:0Issues:0Issues:0

k8s-db-collector

Collect k8s deprecated and removed API information and save it in parsable format automatically

Language:GoLicense:Apache-2.0Stargazers:0Issues:0Issues:0
Language:GoLicense:Apache-2.0Stargazers:0Issues:1Issues:0

kube-bench

Checks whether Kubernetes is deployed according to security best practices as defined in the CIS Kubernetes Benchmark

Language:GoLicense:Apache-2.0Stargazers:0Issues:1Issues:0

linux-bench

Checks whether a Linux server according to security best practices as defined in the CIS Distribution-Independent Linux Benchmark

Language:GoLicense:Apache-2.0Stargazers:0Issues:0Issues:0
License:Apache-2.0Stargazers:0Issues:1Issues:0

starboard

Kubernetes-native security toolkit

Language:GoLicense:Apache-2.0Stargazers:0Issues:1Issues:0

trivy

Scanner for vulnerabilities in container images, file systems, and Git repositories, as well as for configuration issues

Language:GoLicense:Apache-2.0Stargazers:0Issues:1Issues:0
Language:GoLicense:MITStargazers:0Issues:0Issues:0
Language:GoLicense:Apache-2.0Stargazers:0Issues:0Issues:0
Language:GoLicense:MITStargazers:0Issues:0Issues:0

trivy-kubernetes

Trivy kubernetes library

Language:GoLicense:Apache-2.0Stargazers:0Issues:0Issues:0

vuln-list-k8s

k8s vulnerability advisory

License:Apache-2.0Stargazers:0Issues:0Issues:0
Language:GoLicense:Apache-2.0Stargazers:0Issues:1Issues:0

windows-bench

Checks whether a Windows server according to security best practices as defined in the CIS Distribution-Independent Windows Benchmark

Language:GoLicense:Apache-2.0Stargazers:0Issues:0Issues:0