Aqua Security is a Cloud Native Application Protection Platform (CNAPP) that secures containerized cloud native applications throughout their lifecycle, from development to production. The platform integrates security measures from code to cloud, combining agent-based and agentless technologies. It focuses on preventing attacks by enforcing pre-deployment hygiene and mitigating attacks in real-time during production. Aqua Security offers features such as container vulnerability scanning, Kubernetes security, serverless security, cloud VM security, and dynamic threat analysis. It supports multiple cloud environments, including AWS, Azure, and Google Cloud, as well as container platforms like Docker and OpenShift. The platform aims to automate DevSecOps processes, facilitate compliance and auditing, and provide cloud native detection and response capabilities. It is designed to operate at enterprise scale without impeding development pipelines.
FEATURES
EXPLORE BY TAGS
SIMILAR TOOLS
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.
GuardDog is a CLI tool that identifies malicious PyPI and npm packages using heuristics-based analysis of source code and metadata.
An open-source tool that automates the detection and analysis of DLL hijacking vulnerabilities in Windows applications, providing detailed reports and remediation guidance.
QIRA is a competitor to strace and gdb with MIT license, supporting Ubuntu and Docker for wider compatibility.
A Nuxt 3 security module that automatically implements OWASP security patterns through HTTP headers, middleware, and various protection mechanisms including CSP, XSS validation, CORS, and CSRF protection.
A deliberately vulnerable Java web application designed for educational purposes to teach web application security concepts and common vulnerabilities.
A comprehensive toolkit for web application security testing, offering a range of products and solutions for identifying vulnerabilities and improving security posture.
AndroBugs Framework is an Android vulnerability analysis system that scans mobile applications for security vulnerabilities, missing best practices, and dangerous shell commands.
PINNED

Checkmarx SCA
A software composition analysis tool that identifies vulnerabilities, malicious code, and license risks in open source dependencies throughout the software development lifecycle.

Orca Security
A cloud-native application protection platform that provides agentless security monitoring, vulnerability management, and compliance capabilities across multi-cloud environments.

DryRun
A GitHub application that performs automated security code reviews by analyzing contextual security aspects of code changes during pull requests.