Skip to content

Instantly share code, notes, and snippets.

View p5's full-sized avatar

Robert Sturla p5

View GitHub Profile
~/tmp
❯ ./syft-hb.sh ghcr.io/secureblue/silverblue-main-hardened:latest > sbom.json
Downloading CPE dictionary...
Downloading supplementary CPE mappings...
Processing supplementary CPE mappings...
Building CPE vendor lookup map...
~/tmp took 8s
❯ grype sbom.json
✔ Scanned for vulnerabilities [617 vulnerability matches]

Keybase proof

I hereby claim:

  • I am p5 on github.
  • I am sturlar (https://keybase.io/sturlar) on keybase.
  • I have a public key ASDVB2YL3gGCcpHTGx6UrbLOjyh1zEwq7xozFbNXeKNh7Ao

To claim this, I am signing this object: