Published July 3, 2023 | Version v1

Are we reasoning about cloud application vulnerabilities in the right way?

  • 1. University of Twente

Description

Abstract: Enterprises are quickly transitioning to container orchestrators, like Kubernetes, which helps developers and engineers manage a large number of container images, pods, and nodes. However, this new approach does not solve the problem of software vulnerabilities but arguably it makes vulnerability management harder. Most of the time, companies have to deal with thousands of containers in a dynamic environment since they can fail, and be rescheduled in other nodes. All these factors have a great impact on the vulnerability management system because the vulnerabilities and misconfigurations in the system are too many to be manually operated, so we seek a tool to highlight the most dangerous (we need a clear definition of dangerous) to prioritize them. This paper wants to emphasize the need for a vulnerability prioritization method and a defense technique improvement.

Files

eurosp23posters-final-5.pdf

Files (357.0 kB)

Name Size Download all
md5:539d9c261d675298c24f8b0e532bd731
357.0 kB Preview Download

Additional details

Related works

Is part of
10.5281/zenodo.8197667 (DOI)