Syft Logo

Syft

0
Free
Visit Website

Syft is a powerful and easy-to-use open-source tool for generating Software Bill of Materials (SBOMs) for container images and filesystems. It provides detailed visibility into the packages and dependencies in your software, helping you manage vulnerabilities, license compliance, and software supply chain security.

FEATURES

ALTERNATIVES

A command-line tool to get valuable information out of AWS CloudTrail and a general purpose toolbox for working with IAM policies

CLI tool for deleting AWS resources in bulk with inspecting functionality.

CloudScraper is a tool for enumerating cloud resources, including S3 Buckets, Azure Blobs, and Digital Ocean Storage Space.

gVisor is an application kernel that provides isolation for running sandboxed containers.

A unified extended detection and response (XDR) platform that provides comprehensive visibility and protection across hybrid IT environments through integrated prevention, detection, and response capabilities.

Commercial

Analyzes CloudTrail data of a given AWS account and generates a summary of recently active IAM principals, API calls they made, as well as regions, IP addresses and user agents they used.

A framework for executing attacker actions in the cloud with YAML-based format for defining TTPs and detection properties, deployable via AWS-native CI/CD pipeline.

A detection-as-code platform for streamlining cloud security operations and responding to security incidents.