Skip to content

vernizus/Container-Audit-Botiquin

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

16 Commits
 
 
 
 
 
 
 
 
 
 

Repository files navigation

🛡️ Container Audit Botiquín (Toolkit)

A comprehensive Cybersecurity tool designed for analysts and DevSecOps teams. This script automates container auditing—from static Dockerfile analysis to real-time intrusion detection—adhering to Security by Design principles.

Read this in Spanish / Leer en español

🚀 Key Features

  • Static Analysis (Linter): Dockerfile evaluation using Hadolint.
  • Vulnerability Scanning (SCA): Detection of CVEs and exposed secrets via Trivy.
  • Infrastructure Hardening: Host auditing based on the CIS Benchmark standard.
  • Runtime Security: Intrusion detection and system call monitoring with Falco.
  • Zero-Trust Mode: Automated full-spectrum audit with a single command.
  • Silent Interface: Clean terminal output with visual indicators (spinners).

🛠️ Usage

  1. Clone: git clone https://github.com/TU_USUARIO/container-audit-botiquin.git
  2. Permissions: chmod +x container-audit-toolkit.sh
  3. Run: ./container-audit-toolkit.sh

🚧 Roadmap & Future Improvements

This project is under active development. Future updates will include:

  • Support for Kubernetes (K8s) auditing.
  • HTML/PDF export for executive reports.
  • Enhanced secret scanning with custom regex.

🤝 Contributions

Found a bug or have a suggestion? Contributions are welcome! Feel free to:

  • Open an Issue with your feedback.
  • Submit a Pull Request with your improvements.

👤 Author

Alejandro Fernandes aka vernizus - Cybersecurity Analyst I am passionate about Infrastructure Optimization and Security by Design. Any feedback is highly appreciated!

About

🛡️ Container Audit Botiquín: A professional Bash toolkit for full-spectrum container security. Linter, SCA, CIS Benchmarking, and Runtime monitoring in one silent, container-native script.

Resources

License

Stars

Watchers

Forks

Releases

No releases published

Packages

 
 
 

Contributors

Languages