Container Compliance Resources and tools to assert compliance of containers (rocket, docker, ...). Assessing running containers and cold images. Vulnerability and compliance audit. Vulnerability scan of Docker image. This command will attach docker image, determine OS variant/version, download CVE stream applicable to the given OS, and finally run vulnerability scan. Scanning Docker image using OpenSCAP. Run any OpenSCAP command within chroot of mounted docker image. Learn more about OSCAP_ARGUMENTS in man oscap.

FEATURES

This tool is not verified yet and doesn't have listed features.

Did you submit the verified tool? Sign in to add features.

Are you the author? Claim the tool by clicking the icon above. After claiming, you can add features.

ALTERNATIVES

Open source multi-cloud security-auditing tool for assessing security posture of cloud environments.

Azucar is a multi-threaded plugin-based tool for assessing Azure Cloud security.

Comprehensive suite of tools and resources by Microsoft Azure for ensuring security and protection of data and applications in the cloud.

gVisor is an application kernel that provides isolation for running sandboxed containers.

Implements a cloud version of the Shadow Copy attack against domain controllers in AWS, allowing theft of domain user hashes.

Metabadger helps prevent SSRF attacks on AWS EC2 by automating upgrades to the more secure Instance Metadata Service v2 (IMDSv2).