Scanning for AWS Security Issues with Trivy

This page summarizes the projects mentioned and recommended in the original post on news.ycombinator.com

InfluxDB - Power Real-Time Data Analytics at Scale
Get real-time insights from all types of time series data with InfluxDB. Ingest, query, and analyze billions of data points in real-time with unbounded cardinality.
www.influxdata.com
featured
SaaSHub - Software Alternatives and Reviews
SaaSHub helps you find the best software and product alternatives
www.saashub.com
featured
  • cargo-auditable

    Make production Rust binaries auditable

  • steampipe

    Zero-ETL, infinite possibilities. Live query APIs, code & more with SQL. No DB required.

  • Readers may also enjoy Steampipe [1]. It's an open source "ops as code" CLI to query 83+ services (AWS, GitHub, Terraform, etc) with SQL [2] that comes with hundreds of ready to use benchmarks (CIS, NIST, Cost) and dashboards built in HCL [3]. The AWS Compliance mod [4] and Trivy plugin [5] are specific examples. (Disclaimer - I'm a lead on the project.)

    1 - https://steampipe.io

  • InfluxDB

    Power Real-Time Data Analytics at Scale. Get real-time insights from all types of time series data with InfluxDB. Ingest, query, and analyze billions of data points in real-time with unbounded cardinality.

    InfluxDB logo
  • steampipe-plugin-trivy

    Use SQL to instantly query advisories, vulnerabilities, packages, findings and more using Trivy. Open source CLI. No DB required.

  • steampipe-mod-aws-compliance

    Run individual controls or full compliance benchmarks for CIS, PCI, NIST, HIPAA and more across all of your AWS accounts using Powerpipe and Steampipe.

  • cloudquery

    The open source high performance ELT framework powered by Apache Arrow

  • Shameless plug, you can also enjoy CloudQuery (https://github.com/cloudquery/cloudquery) where we take a more ELT approach so you can use plain SQL for policies (https://github.com/cloudquery/cloudquery/tree/main/plugins/s...) and then use any BI tools for visualization and monitoring (https://github.com/cloudquery/cloudquery/tree/main/plugins/s...).

    Shout out to steampipe bellow as a similar project though that takes a more real-time approach rather then ELT which has it's use-cases as well.

  • ScoutSuite

    Multi-Cloud Security Auditing Tool

NOTE: The number of mentions on this list indicates mentions on common posts plus user suggested alternatives. Hence, a higher number means a more popular project.

Suggest a related project

Related posts

  • Osquery: An sqlite3 virtual table exposing operating system data to SQL

    14 projects | news.ycombinator.com | 25 Feb 2024
  • Compliance as code for AWS

    2 projects | /r/u_steampipeio | 21 Apr 2022
  • How to run an AWS CIS v3.0 assessment in CloudShell

    2 projects | dev.to | 8 Feb 2024
  • Steampipe vs aws security hub

    3 projects | /r/cybersecurity | 21 Dec 2022
  • Resoto: An open-source alternative to AWS Systems Manager Inventory

    3 projects | /r/aws | 29 Jul 2022