-
Updated
Mar 1, 2023 - Python
sca
Here are 101 public repositories matching this topic...
Dependency-Track is an intelligent Component Analysis platform that allows organizations to identify and reduce risk in the software supply chain.
-
Updated
Mar 5, 2023 - Java
Payments for Ruby on Rails apps
-
Updated
Mar 5, 2023 - Ruby
An open source tool focused on software supply chain security. 墨菲安全专注于软件供应链安全,具备专业的软件成分分析(SCA)、漏洞检测、专业漏洞库。
-
Updated
Mar 1, 2023 - Go
Log4J scanner that detects vulnerable Log4J versions (CVE-2021-44228, CVE-2021-45046, etc) on your file-system within any application. It is able to even find Log4J instances that are hidden several layers deep. Works on Linux, Windows, and Mac, and everywhere else Java runs, too!
-
Updated
Mar 10, 2022 - Java
Fully open-source security audit for project dependencies based on known vulnerabilities and advisories. Supports both local repos and container images. Integrates with various CI environments such as Azure Pipelines, CircleCI and Google CloudBuild. No server required!
-
Updated
Mar 2, 2023 - Python
A simple Java command-line utility to mirror the CVE JSON data from NIST.
-
Updated
Nov 4, 2022 - Java
Creates CycloneDX Software Bill-of-Materials (SBOM) for your projects from source and container images. Supports many languages and package managers. Integrate in your CI//CD pipeline with automatic submission to Dependency Track server.
-
Updated
Mar 6, 2023 - JavaScript
prancer platform is an IaC Security engine + Continuous Compliance for your cloud (Azure, AWS, GCP) and Kubernetes environment
-
Updated
Mar 3, 2023 - Python
用于检测maven项目的第三方依赖组件是否存在安全漏洞。
-
Updated
Apr 12, 2022 - Java
ScanCode.io is a server to script and automate software composition analysis pipelines with ScanPipe pipelines. This project is sponsored by NLnet project https://nlnet.nl/project/vulnerabilitydatabase/ Google Summer of Code, nexB and others generous sponsors!
-
Updated
Mar 3, 2023 - Python
A curated list of Software Component Analysis (SCA) books, courses - free and paid, videos, tools, and tutorials.
-
Updated
Sep 14, 2022
Vulnerability database and package search for sources such as Linux, OSV, NVD, GitHub and npm.
-
Updated
Mar 1, 2023 - Python
A simple Java command-line utility to mirror the entire contents of VulnDB.
-
Updated
Feb 23, 2023 - Java
Detections for CVE-2021-44228 inside of nested binaries
-
Updated
Dec 18, 2021 - YARA
Python Elliptic Curve Side-Channel Analysis toolkit.
-
Updated
Feb 22, 2023 - Python
Improve this page
Add a description, image, and links to the sca topic page so that developers can more easily learn about it.
Add this topic to your repo
To associate your repository with the sca topic, visit your repo's landing page and select "manage topics."

