89 results for “topic:sbom-tool”
scanner detecting the use of JavaScript libraries with known vulnerabilities. Can also generate an SBOM of the libraries it finds.
The CVE Binary Tool helps you determine if your system includes known vulnerabilities. You can scan binaries for over 350 common, vulnerable components (openssl, libpng, libxml2, expat and others), or if you know the components used, you can get a list of known vulnerabilities associated with an SBOM or a list of components and versions.
Panthera(P.)uncia - Official CLI utility for Osprey Vision, Subdomain Center & Exploit Observer.
A tool to automatically build a dependency graph and Software Bill of Materials (SBOM) for packages and arbitrary source code repositories.
CycloneDX Software Bill of Materials (SBOM) generator for Python projects and environments
sbomqs: The Comprehensive SBOM Quality & Compliance Tool
A suite of utilities to help with software supply chain challenges on nix targets
Enrich SBOMs with data from third party services
creates CycloneDX Software-Bill-of-Materials (SBOM) from node-based projects
Deptective automatically determines the native dependencies required to run any arbitrary program or command.
Utility that provides an API platform for validating, querying and managing BOM data
Create CycloneDX Software Bill of Materials (SBOM) from Node.js NPM projects.
sbomasm: The Complete SBOM Management Toolkit
Semantic SBOM diff and TUI analysis tool. Compares CycloneDX/SPDX files to component changes, dependency shifts, license conflicts, and vulnerabilities.
ReARM - Release-Level Supply Chain Evidence Platform. SBOMs, xBOMs and every other artifact - stored for 10+ years, versioned and audit-ready.
Validate the SPDX SBOM against NTIA, CISA, and other minimum element requirements.
A toolset for dealing with Cryptography Bill of Materials (CBOM)
Create CycloneDX Software Bill of Materials (SBOM) from PHP Composer projects
A tool to automatically detect copy+pasted and vendored code between repositories
This repository contains a SonarQube Plugin that detects cryptographic assets in source code and generates CBOM.
This tool compares two Software Bill of Materials (SBOMs) and reports the differences.
This repository contains the container image scanning tool ORCA
Library to ingest and generate SBOMs
Transform SBOM contents into a formatted document including markdown and PDF formats
Generate CycloneDX Software Bill of Materials (SBOM) from webpack bundles at compile time.
SBOM Search - Context aware search in SBOM repositories
SBOM Move - Automate build and transfer of SBOMs across systems
A GitHub Action that creates a SBOM from your application so you can meet compliance and security requirements. Add this to your dev, staging and prod steps and SecureStack will make sure that what you've just deployed is secure and meets your requirements, and has the SBOM to show it!
Create CycloneDX Software Bill of Materials (SBOM) from Node.js Yarn projects.
A Go-based CLI tool to automate the upload and lifecycle management of Software Bill of Materials (SBOM) in OWASP Dependency-Track.