Trivy is a comprehensive and versatile security scanner. Trivy has scanners that look for security issues, and targets where it can find those issues.
Trivy is a comprehensive and versatile security scanner for containerized applications and infrastructure. It provides multiple scanners that detect vulnerabilities, misconfigurations, secrets, and SBOM (Software Bill of Materials) across various targets including container images, filesystems, Git repositories, Kubernetes clusters, and cloud infrastructure.
Trivy excels at finding security issues in:
Key features include:
For more details, visit https://aquasecurity.github.io/trivy/.