Scanning KBOM for Vulnerabilities with Trivy
ID: b12b6eed-5299-54f9-9ade-0069bef144a1
STIX ID: report--b12b6eed-5299-54f9-9ade-0069bef144a1
Feed Name: Aqua Security Blog
This blog post announces and explains Trivy's Kubernetes Bills of Material (KBOM) capability: how to generate a KBOM from a Kubernetes cluster, scan it for component vulnerabilities using Trivy (including command examples), and the creation of a Kubernetes Vulnerability Database to support scanning. It describes current functionality (generating CycloneDX KBOMs, scanning via trivy sbom or trivy k8s), limitations (doesn't include workloads), and planned improvements and integrations, and invites users to try Trivy and contribute feedback.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
