KubeLight icon indicating copy to clipboard operation
KubeLight copied to clipboard

OWASP Kubernetes security and compliance tool [WIP]

KubeLight Logo

License

OWASP KubeLight - Kubernetes Security Scanner

Scan your Kubernetes Cluster for Security & Compliance

  1. Scan K8s clusters to detect Misconfiguration.
  2. Lightweight, Pure python, fast, multithreaded tool.
  3. NoSQL Query Engine.
  4. Realtime alerts on Slack
  5. SBOM generation and Image Vulnerability Scan.
  6. Compliance Reports for PCI-DSS, SOC2, NSA and CIS Benchmarks.

Note - We are releasing above points in version 0.0.5

TODOS

  • [ ] Kubernetes Pentest.
  • [ ] Container Runtime security support - Sydig Falco and Machine learning
  • [ ] Intiuitive UI and Dashboards
  • [ ] CI/CD support.

Links