Syft Logo

Syft

0
Free
Visit Website

Syft is a powerful and easy-to-use open-source tool for generating Software Bill of Materials (SBOMs) for container images and filesystems. It provides detailed visibility into the packages and dependencies in your software, helping you manage vulnerabilities, license compliance, and software supply chain security.

FEATURES

ALTERNATIVES

A security tool that monitors AWS objects for ownership attribution, detects domain hijacking, and verifies security services.

An AWS resource policy security checkup tool that identifies public, external account access, intra-org account access, and private resources.

A collection of tools for forensics teams to collect evidence from cloud platforms

Lists AWS resources using the AWS Cloud Control API and writes them to a JSON output file.

Nuvola is a tool for security analysis on AWS environments with a focus on creating a digital twin of cloud platforms.

A command-line tool to get valuable information out of AWS CloudTrail and a general purpose toolbox for working with IAM policies

A cloud-native security platform that provides asset inventory, vulnerability management, compliance monitoring, and security posture management across multiple cloud providers.

Commercial

Discover and understand the Docker Layer 2 ICC Bug and its implications on inter-container communication.