ТГХаб
  • Каналы

Security Wine (бывший - DevSecOps Wine)

Testing docker CVE scanners. Part 1: false negatives and what they mean for your security

https://medium.com/@matuzg/testing-docker-cve-scanners-part-1-false-negatives-and-what-they-mean-for-your-security-77fc4eb1b2cf



Testing Docker CVE Scanners. Part 2: How good is package detection?

https://medium.com/@matuzg/testing-docker-cve-scanners-part-2-how-good-is-package-detection-f68d7230b830



Testing docker CVE scanners. Part 2.5 — Exploiting CVE scanners

https://medium.com/@matuzg/testing-docker-cve-scanners-part-2-5-exploiting-cve-scanners-b37766f73005



Testing Docker CVE scanners. Part 3: Test it yourself / Conclusions

https://medium.com/@matuzg/testing-docker-cve-scanners-part-3-test-it-yourself-conclusions-6de868124d3d