紀錄開源的弱掃工具
docker
Docker Bench for Security
掃描鏡像使用
https://github.com/docker/docker-bench-security
鏡像掃描
https://github.com/aquasecurity/trivy#os-packages
CVE
code 掃描
必須是開源的code
https://snyk.io/
紀錄開源的弱掃工具
https://shengshengyang.github.io/2024/01/24/weak-point-scan/