Dev0ps
40 subscribers
211 photos
3 videos
50 files
3.33K links
Download Telegram
🛠 И вот ещё про хардендинг различиных элементов того, с чем инженерам приходится работать https://dev-sec.io/baselines/ жмём на нужный элемент в схеме - получаем ссылку на инструкции.

У них ещё и репозиториев на Github пачка, в которых все примеры опубликованы и аккуратно разложены https://github.com/dev-sec

#devsecops #devops #security
Forwarded from GitHub'ненько
Prowler is an Open Source security tool to perform AWS, Azure, Google Cloud and Kubernetes security best practices assessments, audits, incident response, continuous monitoring, hardening and forensics readiness, and also remediations!
#security #cli #compliance #hardening #devsecops #cloud
https://github.com/prowler-cloud/prowler
Forwarded from GitHub'ненько
CLI tool and library for generating a Software Bill of Materials from container images and filesystems

Syft is a powerful and easy-to-use open-source tool for generating Software Bill of Materials (SBOMs) for container images and filesystems. It provides detailed visibility into the packages and dependencies in your software, helping you manage vulnerabilities, license compliance, and software supply chain security.
#sbom #security #cli #devsecops
https://github.com/anchore/syft