Securing ISV-Provided Container Images
ID: 945f8af8-bf1b-5398-99f0-5f799bf30914
STIX ID: report--945f8af8-bf1b-5398-99f0-5f799bf30914
Feed Name: Aqua Security Blog
This guidance outlines best practices for securing ISV-provided container images: scan every image and integrate scanning into CI/CD, eliminate embedded secrets and excessive privileges, enforce vulnerability and license policies, label images to enable segregation and policy enforcement, verify image integrity and provenance with tools like Grafeas and Notary, and apply runtime protection and least-privilege profiles; automating these measures reduces attack surface and ensures consistent security for third-party and in-house images.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
