Average Ratings 0 Ratings
Average Ratings 0 Ratings
Description
Kubernetes is an open-source platform that provides developers and DevOps with an end-to-end security solution. This includes security compliance, risk analysis, security compliance and RBAC visualizer. It also scans images for vulnerabilities.
Kubescape scans K8s clusters, Kubernetes manifest files (YAML files, and HELM charts), code repositories, container registries and images, detecting misconfigurations according to multiple frameworks (such as the NSA-CISA, MITRE ATT&CK®), finding software vulnerabilities, and showing RBAC (role-based-access-control) violations at early stages of the CI/CD pipeline. It instantly calculates risk scores and displays risk trends over time.
Kubescape is one of the most popular Kubernetes security compliance tools for developers. Its easy-to-use interface, flexible output formats and automated scanning capabilities have made Kubescape one of the fastest growing Kubernetes tools. This has saved Kubernetes admins and users precious time, effort and resources.
Description
Threagile empowers teams to implement Agile Threat Modeling with remarkable ease, seamlessly integrating into DevSecOps workflows. This open-source toolkit allows users to represent an architecture and its assets in a flexible, declarative manner using a YAML file, which can be edited directly within an IDE or any YAML-compatible editor. When the Threagile toolkit is executed, it processes a series of risk rules that perform security evaluations on the architecture model, generating a comprehensive report detailing potential vulnerabilities and suggested mitigation strategies. Additionally, visually appealing data-flow diagrams are automatically produced, along with various output formats such as Excel and JSON for further analysis. The tool also supports ongoing risk management directly within the Threagile YAML model file, enabling teams to track their progress on risk mitigation effectively. Threagile can be operated through the command line, and for added convenience, a Docker container is available, or it can be set up as a REST server for broader accessibility. This versatility ensures that teams can choose the deployment method that best fits their development environment.
API Access
Has API
No
API Access
Has API
No
Integrations
ARMO
Yes
Amazon Web Services (AWS)
Yes
Azure Pipelines
Yes
CircleCI
Yes
Docker
No
GitHub
Yes
GitLab
Yes
Google Cloud Build
Yes
JSON
No
Jenkins
Yes
Integrations
ARMO
No
Amazon Web Services (AWS)
No
Azure Pipelines
No
CircleCI
No
Docker
Yes
GitHub
No
GitLab
No
Google Cloud Build
No
JSON
Yes
Jenkins
No
Pricing Details
$0/month
Free Trial
Yes
Free Version
Yes
Pricing Details
Free
Free Trial
No
Free Version
Yes
Deployment
Web-Based
Yes
On-Premises
No
iPhone App
No
iPad App
No
Android App
No
Windows
Yes
Mac
Yes
Linux
Yes
Chromebook
No
Deployment
Web-Based
Yes
On-Premises
No
iPhone App
No
iPad App
No
Android App
No
Windows
No
Mac
No
Linux
No
Chromebook
No
Customer Support
Business Hours
Yes
Live Rep (24/7)
No
Online Support
Yes
Customer Support
Business Hours
No
Live Rep (24/7)
No
Online Support
Yes
Types of Training
Training Docs
Yes
Webinars
Yes
Live Training (Online)
Yes
In Person
No
Types of Training
Training Docs
No
Webinars
No
Live Training (Online)
No
In Person
No
Vendor Details
Company Name
Armo
Founded
2019
Country
Israel
Website
www.armosec.io/kubescape/
Vendor Details
Company Name
Threagile
Website
threagile.io
Product Features
Container Security
Access Roles / Permissions
Yes
Application Performance Tracking
No
Centralized Policy Management
No
Container Stack Scanning
Yes
Image Vulnerability Detection
Yes
Reporting
Yes
Testing
No
View Container Metadata
No