logo

Google Cloud expands vulnerability detection for Artifact Registry using OSV

ID: f49d2234-c4ae-5850-8f48-f435c4468e45

STIX ID: report--f49d2234-c4ae-5850-8f48-f435c4468e45

Feed Name: Google Online Security Blog

Date Published: 2024-12-10

Date Updated: 2026-04-27

Author: Kimberly Samra

...
...

Google Cloud’s Artifact Analysis has expanded vulnerability scanning coverage by integrating with the Open Source Vulnerabilities (OSV) platform, broadening support to more language ecosystems, operating systems, and popular minimal base images (e.g., Wolfi and Distroless). Existing Artifact Registry and On Demand Scanning users automatically gain higher-fidelity findings across a wider set of dependencies, accessible via the Artifact Registry UI, Container Analysis API, and Pub/Sub. Looking ahead, Google plans to integrate these vulnerability findings with Security Command Center in 2025 to enhance comprehensive vulnerability management and risk prioritization.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.