fasten-project / vulnerability-producer

Gathers, enriches and publishes vulnerability information to a Kafka topic.
https://www.fasten-project.eu/
Apache License 2.0
6 stars 3 forks source link
vulnerabilities



The FASTEN Vulnerability Producer gathers information from different sources, enriches the data with patch details and then publishes it to a Kafka topic. It is designed to be used as a standalone tool.

Arguments

Usage

A couple of environmental variables need to be set in order to run the plugin:

Gathering and publishing vulnerability information

FASTEN_GHTOKEN=token FASTEN_MONGOPASS=pass -mu user -dam admin -mdb github -mh 127.0.0.1

Reading information from the JSON file and publishing it

-f vulnerabilities/data.json

For more detailed information regarding the sources of information and the architecture, see here.

Join the community

The FASTEN software package management efficiency relies on an open community contributing to open technologies. Related research projects, R&D engineers, early users and open source contributors are welcome to join the FASTEN community, to try the tools, to participate in physical and remote worshops and to share our efforts using the project community page and the social media buttons below.