> For the complete documentation index, see [llms.txt](https://developer.harness.io/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://developer.harness.io/security-testing-orchestration/use-sto/sto-scanner-configuration/shared/sto-supported-binaries.md).

# Sto Supported Binaries

Harness maintains and updates a container image for every scanner supported by STO. The following table lists the binaries and versions used for the most popular scanners.

| Scanner        | Binary                                             | Current version     |
| -------------- | -------------------------------------------------- | ------------------- |
| Aqua Trivy     | `trivy image`                                      | Latest stable build |
| Bandit         | `bandit`                                           | 1.7.4               |
| Black Duck Hub | `synopsys detect`                                  | 9.0.0               |
| Brakeman       | `brakeman`                                         | 4.4.0               |
| Checkmarx      | `runCxConsole.sh`                                  | 1.1.26              |
| Grype          | `grype`                                            | Latest stable build |
| Nikto          | `Nikto`                                            | 2.1.6               |
| Nmap           | `nmap`                                             | 7.92                |
| Prowler        | `prowler`                                          | Latest stable build |
| SonarQube      | `sonar-scanner`                                    | 4.7.0.2747          |
| Twistlock      | `twistcli`                                         | 30.01.152           |
| Whitesource    | `java -jar /opt/whitesource/wss-unified-agent.jar` | 23.5.2.1            |
