Rootless Docker Images for Secure Kubernetes Deployments
-
Updated
Dec 18, 2025 - Dockerfile
Rootless Docker Images for Secure Kubernetes Deployments
Instant web security analysis: detect vulnerabilities in HTTP headers, TLS, and CORS with a single scan
Wazuh - The Open Source Security Platform. Unified XDR and SIEM protection for endpoints and cloud workloads.
🧵 CLI tool for directly patching container images!
Trivy Operator Dashboard: A comprehensive tool for Trivy Operator. Offers various dashboards and interactive pages where you can browse and inspect Trivy Reports. Built with C#, .NET 9 (backend), Angular 20, and Node.js 24 (frontend).
Konarr: A free and open source SCA platform for your containers
Complete solution for deploying Falco security in air-gapped environments with local testing and AWS EKS production deployment
A shorthand GitHub Action for building Docker and pushing to ghcr.io and other repositories. An smaller alternative to combining qemu and other steps.
Vision One Container Security Scan Action
PatchHound is an open source SBOM vulnerability scanner and report generator with image signing, verification, and automated alerts for secure software supply chains.
Anonymous batch job execution system with Linux namespace/seccomp sandboxing, resource limits, and WebSocket streaming
Docker best practices using multi-stage builds, optimized images, dependency pinning, non-root execution, and small, secure production-ready containers.
Multi-cloud xSPM platform to scan, visualize, and remediate security risks across cloud, containers, and Kubernetes environments.
Automated container image scanning pipeline using GitHub Actions and Trivy. Builds Docker images, enforces a High/Critical vulnerability gate, and generates HTML reports, SBOMs, and SAST findings. Demonstrates DevSecOps, supply chain security, and CI-based risk controls.
Kubernetes Goat is a "Vulnerable by Design" cluster environment to learn and practice Kubernetes security using an interactive hands-on playground 🚀
Fortify SSC Parser Plugin for Tenable.io Container Security results
📦 Make security testing of K8s, Docker, and Containerd easier.
Production-ready automated container image vulnerability scanning system using AWS ECR, Inspector v2, Lambda, and EventBridge
🔐 A curated list of awesome DevSecOps tools, practices, and resources for securing the software development lifecycle
Inspect certificate authorities in container images
Add a description, image, and links to the container-security topic page so that developers can more easily learn about it.
To associate your repository with the container-security topic, visit your repo's landing page and select "manage topics."