Checkov is a static code analysis tool for infrastructure as code (IaC) and software composition analysis (SCA). It scans cloud infrastructure provisioned using various tools like Terraform, Cloudformation, Kubernetes, Dockerfile, and more to detect security and compliance misconfigurations. It also performs Software Composition Analysis (SCA) scanning for open source packages and images to identify Common Vulnerabilities and Exposures (CVEs). Checkov powers Prisma Cloud Application Security, a platform that streamlines cloud security throughout the development lifecycle by identifying, fixing, and preventing misconfigurations in cloud resources and infrastructure-as-code files.
Gitleaks is a SAST tool for detecting and preventing hardcoded secrets in git repos.
IDAPython plugin for generating Yara rules/patterns from x86/x86-64 code through parameterization.
API security platform that combines discovery, testing, and monitoring capabilities to identify and protect against API vulnerabilities throughout the development lifecycle.
A tool for brute-forcing GET and POST parameters to discover potential vulnerabilities in web applications.
Falco is a cloud native runtime security tool for Linux operating systems that detects and alerts on abnormal behavior and potential security threats in real-time.
A tool for identifying potential security vulnerabilities in dependency configurations by checking for lingering free namespaces for private package names.
An AI-powered career platform that automates the creation of cybersecurity job application materials and provides company-specific insights for job seekers.
Fabric Platform is a cybersecurity reporting solution that automates and standardizes report generation, offering a private-cloud platform, open-source tools, and community-supported templates.
Stay ahead in cybersecurity. Get the week's top cybersecurity news and insights in 8 minutes or less.
Wiz Cloud Security Platform is a cloud-native security platform that enables security, dev, and devops to work together in a self-service model, detecting and preventing cloud security threats in real-time.
A cybersecurity platform that offers vulnerability scanning, Windows Defender and 3rd party AV management, and MFA compliance reporting, among other features.
Adversa AI is a cybersecurity company that provides solutions for securing and hardening machine learning, artificial intelligence, and large language models against adversarial attacks, privacy issues, and safety incidents across various industries.