OpsCanary
Learn/DevSecOps/Vulnerability Scanning
DevSecOps

Vulnerability Scanning

5 articles from official documentation

Practitioner5 articles
securityscanningPractitioner

Snyk Open Source: Elevate Your Vulnerability Scanning Game

Snyk Open Source is a game-changer for developers tackling vulnerabilities in open-source libraries. It prioritizes and fixes security issues throughout the software development lifecycle (SDLC), making it essential for modern applications.

  • Utilize Snyk Open Source to find and fix vulnerabilities in your open-source libraries.
  • Prioritize security issues throughout the software development lifecycle (SDLC).
5 min read·Official Docs
Read article
securityscanningPractitioner

Securing Your Containers: How Snyk Container Scanning Works

Container security is non-negotiable in today's DevOps landscape. Snyk Container provides essential tools to identify and fix vulnerabilities in your container images, ensuring security is built-in from the start. Discover how to leverage these integrations effectively.

  • Utilize Snyk Container to quickly find and fix vulnerabilities in your container images.
  • Integrate Snyk into your CI/CD pipeline for proactive security measures.
4 min read·Official Docs
Read article
securityscanningPractitioner

Securing Cloud Infrastructure: Snyk IaC Scanning in Action

Cloud misconfigurations can lead to severe security breaches. Snyk IaC enables you to scan and secure configurations for Terraform, AWS CloudFormation, and more, ensuring your infrastructure is robust before and after deployment.

  • Integrate Snyk IaC into your CI/CD pipelines for continuous security.
  • Utilize Snyk IaC to scan configurations for Terraform, AWS CloudFormation, Kubernetes, and ARM.
5 min read·Official Docs
Read article
securityscanningPractitioner

Filesystem Scanning: Uncovering Vulnerabilities and Secrets with Trivy

In today's security landscape, scanning your filesystem for vulnerabilities and secrets is non-negotiable. Trivy makes this process straightforward, enabling you to identify issues based on lock files like Gemfile.lock and package-lock.json. But are you leveraging all its capabilities effectively?

  • Enable misconfiguration scanning with `--scanners misconfig` to catch potential issues.
  • Use `$trivy fs/path/to/project` to initiate a full filesystem scan.
5 min read·Official Docs
Read article
securityscanningPractitioner

Mastering Container Image Scanning with Trivy

Container image security is non-negotiable in today's DevOps landscape. Trivy stands out by detecting vulnerabilities, misconfigurations, and secrets in your images with ease. Learn how to leverage its capabilities effectively.

  • Detect known vulnerabilities in your container images using Trivy.
  • Enable misconfiguration scanning with the `--image-config-scanners` flag.
5 min read·Official Docs
Read article
DigitalOceanSponsor

Simple, affordable cloud — VMs, Kubernetes, and managed databases in minutes. Trusted by 600,000+ developers. Spin up a Droplet in 60 seconds.

Try DigitalOcean →

Get the daily digest

One email. 5 articles. Every morning.

No spam. Unsubscribe anytime.