What does HackerNews think of ThreatMapper?
Open source cloud native security observability platform. Linux, K8s, AWS Fargate and more.
Language:
Go
Hope this helps someone. How we visualized and fixed runtime exposure due to vulnerable Elasticsearch, using ThreatMapper
How we visualized and fixed runtime exposure due to vulnerable Elasticsearch, using ThreatMapper
https://deepfence.io/cve-2021-44228-log4j2-exploitability-an...
How we fixed exposure due to vulnerable Elasticsearch using ThreatMapper
All of us are scrambling to upgrade to 2. This OSS tool can help prioritise attack paths using runtime context. We had a potential exposure due to Elasticsearch, found out and patched. https://github.com/deepfence/ThreatMapper
The project is available here