資安週報Security Weekly 攻擊手法通報 × 資安工具Advisories × Tooling

資安工具庫Security tools

週報介紹過的工具會累積在這裡,可依用途篩選。Every tool featured in the weekly, filterable by category.

網路可視性Network visibility Apache-2.0

Kubeshark

Kubernetes 叢集的即時流量檢視器,以 eBPF 擷取並帶上完整的 K8s 脈絡——等於叢集版的 Wireshark。Real-time traffic visibility for Kubernetes, capturing with eBPF and annotating with full K8s context — Wireshark for your cluster.

  • KubernetesKubernetes
  • eBPFeBPF
  • 事件應變Incident response
  • 藍隊Defensive
漏洞掃描Vulnerability scanning MIT

Nuclei

以 YAML 樣板驅動的漏洞掃描器,社群樣板庫覆蓋大量已知 CVE 與設定疏失。Template-driven vulnerability scanner with a large community library covering known CVEs and misconfigurations.

  • 漏洞掃描Vulnerability scanning
  • 紅隊Offensive
  • 資產盤點Attack surface
  • CI 整合CI-friendly
AI 應用安全AI application security MIT

promptfoo

對 LLM 應用做紅隊測試與回歸測試的工具,把提示注入、資料外洩等風險變成可重複執行的測項。Red-teaming and regression testing for LLM applications, turning prompt injection and data-leak risks into repeatable test cases.

  • AI 安全AI security
  • 提示注入Prompt injection
  • 紅隊Red teaming
  • CI 整合CI-friendly
供應鏈安全Supply chain Apache-2.0

Trivy

一支指令掃遍容器映像、原始碼相依套件、IaC 設定與密鑰外洩。One command to scan container images, code dependencies, IaC configs, and leaked secrets.

  • 容器安全Container security
  • SBOMSBOM
  • CI 整合CI-friendly
  • 藍隊Defensive
事件應變Incident response AGPL-3.0

Velociraptor

以查詢語言驅動的端點鑑識平台,能同時對上千台主機提問「你身上有沒有這個跡證」並在數分鐘內收到答案。A query-driven endpoint forensics platform that asks thousands of hosts "do you have this artefact" at once and answers within minutes.

  • 數位鑑識Digital forensics
  • 威脅獵捕Threat hunting
  • 藍隊Defensive
  • 跨平台Cross-platform