Terrascan Logo

Terrascan

0
Free
Visit Website

Terrascan is a static code analyzer for Infrastructure as Code that allows you to seamlessly scan IaC for misconfigurations, monitor provisioned cloud infrastructure for changes, detect security vulnerabilities, and compliance violations. It offers flexibility to run locally or integrate with CI/CD pipelines. Key features include 500+ security best practice policies, scanning of Terraform, AWS CloudFormation, Azure Resource Manager, Kubernetes, Dockerfiles, and integration with AWS, Azure, GCP, Kubernetes, Dockerfile, and GitHub.

FEATURES

ALTERNATIVES

AWS Web Application Firewalls (WAFs) protect web applications and APIs from attacks, providing prebuilt security rules and the ability to create custom rules.

IronBee is an open source project building a universal web application security sensor.

OWASP Damn Vulnerable Web Sockets (DVWS) is a vulnerable web application for client-server communication with numerous vulnerabilities.

Static application security testing (SAST) tool for scanning source code against security and privacy risks.

A tool to scan for CORS misconfigurations in web applications

An API security platform that discovers, documents, and tests APIs throughout the development lifecycle while maintaining a centralized catalog of all API assets.

A deliberately weak and insecure implementation of GraphQL for testing and practicing GraphQL security

Aikido is an all-in-one security platform that combines multiple security scanning and management functions for cloud-native applications and infrastructure.

CyberSecTools logoCyberSecTools

Explore the largest curated directory of cybersecurity tools and resources to enhance your security practices. Find the right solution for your domain.

Copyright © 2024 - All rights reserved