Audit Your Software Supply Chain for CIS Compliance
ID: d758d6e0-b8b3-520e-af70-8ecf54ef266c
STIX ID: report--d758d6e0-b8b3-520e-af70-8ecf54ef266c
Feed Name: Aqua Security Blog
Aqua Security introduces Chain-bench, an open-source tool that audits software supply chains for compliance with the CIS Software Supply Chain Security Guide. Chain-bench runs around 100 checks across source code, build pipelines, dependencies, artifacts, and deployment phases, provides remediation guidance tied to CIS controls and the Aqua Vulnerability Database (AVD), and is presented as a community-driven project with installation instructions and invitations for contributions.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
