Daily Shaarli
April 13, 2023
with material: https://web.stanford.edu/class/cs253/
Broad videos on the subject.
A package.json can be provided in order to scan dependencies. It searches for risks.
Checks how vulnerable is a package.
It provides informations to asses if a package is safe enough for the use case.
The tool provides analysis for each line of code too.
A library to handle right and permissions.
It is very useful if both backend and frontend are written in JS.
A wrapper that throws warnings about security risks
A playlist of rust video about rust.
aquasecurity/trivy: Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more
A tool that scans for security risks:
- Container Image
- Filesystem
- Git Repository (remote)
- Virtual Machine Image
- Kubernetes
- AWS