Changes
This release contains the following changes ๐.
Help spread the word or leave a GitHub star if you like it ๐
๐ Features
- Added Option to Automatically Retrigger ScheduledScan on ScanType Changes @J12934 (#672)
- Added
ftp-anon
andftp-banner
nmap scripts and support for portrule scripts @EndPositive (#692) - Added ImagePullPolicy to all scanner and parser images (HelmCharts) @rseedorff (#657)
- Added Github Actions to track new scanner version releases @Ilyesbdlala (#710)
- Fixed a Multitude of Makefile and integration test issues and style fixes @EndPositive (#688)
๐ Security Scanner
- Add presigned head url to scan object @EndPositive (#690)
- Added a new Joomla Scanner
cmseek
@Ilyesbdlala (#664) - Fixed scantype for
nuclei
scanner @fuhrmeistery (#700) - Updated
AMASS
scanner to latest release v3.14 @rseedorff (#694) - Added
ftp-anon
andftp-banner
nmap scripts and support for portrule scripts @EndPositive (#692) - Updated
gitleaks
scanner to latest release v.7.6.1 @rseedorff (#666) - Updated
nuclei
to latest release v2.5.2 @rseedorff (#669) - Updated
kubeaudit
to latest release v0.14.2 @rseedorff (#667) - Updated
trivy
to latest release 0.19.2 @rseedorff (#670) - Updated
WPScan
scanner to latest release v3.8.19 @rseedorff (#665) - Implemented init container support for scanners (ADR-0009) @malexmave (#724)
๐ Bug Fixes
- Braces around the links causes docusaurus build fail @Weltraumschaf (#736)
- Helm Chart: Juice-Shop - Ingress installation failed because of 'apiVersion not set' @fbuchmeier-abi (#698)
- Fixed scantype for
nuclei
scanner @fuhrmeistery (#700) - Added defaults for cascading inherit fields and disable omitEmpty @EndPositive (#687)
- Fixed installation scripts @SebieF (#651)
- Fixed change indent for .mk files to tab @fuhrmeistery (#678)
- Fixed Defectdojo Hook Issue Causing It to Not Run on Openshift Clusters @J12934 (#673)
๐งช Test
- Fixed the failing Typo3Scan Integration tests @Ilyesbdlala (#721)
- Added a Joomla demo-target @Ilyesbdlala (#681)
- Decrease Number of Expected Trivy Findings within the integration-test @J12934 (#671)
- Adding integration tests for trivy security scanner @SebieF (#650)
๐ Documentation
- Added ADR-0009 for container pre-populating specs @malexmave (#711)
- Updated ADR-0009 with decision @malexmave (#718)
- Sign the DCO @malexmave (#708)
๐ง Maintenance
- ๐ง [Consistency] Making all
scan-type.yaml
files consistent @SebieF (#703) - ๐ง [Consistency] Making all
values.yaml
files consistent @SebieF (#714) - ๐ง [Consistency] Make all files of
cmseek
follow consistent templates @SebieF (#732) - ๐ง [Consistency] Create New Scanner makefile command @SebieF (#706)
- ๐ง [Consistency] Making all
Chart.yaml files
consistent @SebieF (#702) - ๐ง [Consistency] Making all
cascading-rules.yaml
files consistent @SebieF (#704) - ๐ง [Consistency] Added empty file handling and test to all parsers @SebieF (#705)
- Updated npm deps ./bin/npm-audit-fix-all.sh @fuhrmeistery (#697)
- Added Targets To Build README and Docs @fuhrmeistery (#677)
- Cache Operator and Lurker Images In CI @fuhrmeistery (#662)
- Cache SDK Images As Artifacts @fuhrmeistery (#655)
- Align The Makefile For auto-discovery @fuhrmeistery (#675)
- Updated the Docker Meta Action @fuhrmeistery (#660)
- Added Pipeline For Release Image Builds @fuhrmeistery (#653)
- Added a minio startup helper script @SebieF (#652)
- Added missing modules to new/reworked GH workflows @rseedorff (#737)
- Build Scanners With New Make Targets @fuhrmeistery (#712)
๐ Dependencies
- [Snyk] Upgrade ajv from 8.6.2 to 8.6.3 @snyk-bot (#696)
- Upgrade
AMASS
scanner to latest release v3.14 @rseedorff (#694) - Updated
gitleaks
scanner to latest release v.7.6.1 @rseedorff (#666) - Updated
nuclei
to latest release v2.5.2 @rseedorff (#669) - Updated
kubeaudit
to latest release v0.14.2 @rseedorff (#667) - Updated
trivy
to latest release 0.19.2 @rseedorff (#670) - Updated
WPScan
scanner to latest release v3.8.19 @rseedorff (#665)
Distribution
Contributers
Thx to all our contributers supporting this project ๐ค
@EndPositive, @Ilyesbdlala, @J12934, @SebieF, @Weltraumschaf, @fbuchmeier-abi, @fuhrmeistery, @malexmave, @rseedorff and @snyk-bot