Terrascan Logo

Terrascan

0
Free
Visit Website

Terrascan is a static code analyzer for Infrastructure as Code that allows you to seamlessly scan IaC for misconfigurations, monitor provisioned cloud infrastructure for changes, detect security vulnerabilities, and compliance violations. It offers flexibility to run locally or integrate with CI/CD pipelines. Key features include 500+ security best practice policies, scanning of Terraform, AWS CloudFormation, Azure Resource Manager, Kubernetes, Dockerfiles, and integration with AWS, Azure, GCP, Kubernetes, Dockerfile, and GitHub.

FEATURES

ALTERNATIVES

An AI-powered code security tool that analyzes code for vulnerabilities and provides automated fix suggestions to accelerate remediation.

An Application Security Posture Management platform that helps organizations integrate security throughout the software development lifecycle with a focus on vulnerability management and secure coding practices.

Argus-SAF is a static analysis framework for security vetting Android applications.

Yaramod is a library for parsing YARA rules into AST and building new YARA rulesets with C++ programming interface.

An open-source tool for detecting and analyzing Android apps' vulnerabilities and security issues.

A learning and training project demonstrating common configuration errors in cloud environments.

A tool for redirecting HTTP and HTTPS requests to other URLs.

WordPress plugin to reduce comment spam with a smarter honeypot.