eliasgranderubio / dagda

a tool to perform static analysis of known vulnerabilities, trojans, viruses, malware & other malicious threats in docker images/containers and to monitor the docker daemon and running docker containers for detecting anomalous activities
Apache License 2.0
1.16k stars 163 forks source link

Replace deepfenceio/deepfence_depcheck with 3grander/4depcheck #26

Closed eliasgranderubio closed 6 years ago

eliasgranderubio commented 6 years ago

Improve the performance in the OWASP dependency check + Retire.js analysis over docker images thanks to:

  1. Refactor the extract_filesystem_bundle method for the 4depcheck project can reuse the same filesystem bundle extracted.
  2. Replace deepfenceio/deepfence_depcheck with 3grander/4depcheck
eliasgranderubio commented 6 years ago

Updated Wiki doc too.