container vulnerabilities

8 Tips for Successful Container Vulnerability Scanning
Container vulnerability scanning is a critical part of container security. It involves inspecting container images and their components to identify potential security issues, weaknesses or vulnerabilities. Containers are lightweight, portable units used ...

Sysdig Shines Spotlight on Container Vulnerabilities Based on Level of Risk
Sysdig today made available a Risk Spotlight tool as part of its cloud service for securing and monitoring container environments that makes it easier to prioritize the vulnerabilities that need to be ...

Palo Alto Networks Details Exploit of Microsoft ACI Service
The Unit 42 research arm of Palo Alto Networks has revealed how it discovered vulnerabilities in the multitenant Kubernetes clusters hosted on the Azure Container Instances (ACI) cloud service provided by Microsoft ...

Aqua Security Survey Surfaces Container Security Knowledge Gap
Aqua Security today published a survey that polled a mix of 150 cloud-native security practitioners and IT executives that suggests awareness of potential container security issue is dangerously low at a time ...

Treating Kubernetes as a Source of Truth
Kubernetes is proliferating within today’s IT strata because it is not just a container scheduler; it ships with impressive authentication and RBAC capabilities. With these features, Kubernetes could be used for things ...

Quiet Please! Cloud-Native Development in Progress
The adoption of agile development practices and cloud-native architectures are changing the way organizations build and deliver applications. Applications are no longer written but assembled using a plethora of independent services and ...

Containers Creating Major DevSecOps Challenge
Cyberattacks against containers have moved from being a potential cause for concern to an issue that will have a much greater material impact on the rate at which cloud-native applications are being ...

Trend Micro Publishes Guide to Kubernetes Security
Trend Micro has created a guide to Kubernetes threats that categorizes the threats into three broad categories: external attacks, misconfiguration issues and vulnerable applications. Mark Nunnikhoven, vice president of cloud research at ...

Unpacking Containers to Find Network Vulnerabilities
Containers have seen explosive growth in the last few years. Alongside this growth have come many high-profile news stories about container vulnerabilities. The CVE-2019-11247 vulnerability disclosed last summer that affected Kubernetes application ...

Aqua Security Brings Virtual Patching to Containers
Aqua Security has extended its container security platform to include a virtual patching capability, dubbed Vulnerability Shield, which enables DevSecOps teams to temporarily block access to software components until a patch can ...