Are we reasoning about cloud application vulnerabilities in the right way?
Description
Abstract: Enterprises are quickly transitioning to container orchestrators, like Kubernetes, which helps developers and engineers manage a large number of container images, pods, and nodes. However, this new approach does not solve the problem of software vulnerabilities but arguably it makes vulnerability management harder. Most of the time, companies have to deal with thousands of containers in a dynamic environment since they can fail, and be rescheduled in other nodes. All these factors have a great impact on the vulnerability management system because the vulnerabilities and misconfigurations in the system are too many to be manually operated, so we seek a tool to highlight the most dangerous (we need a clear definition of dangerous) to prioritize them. This paper wants to emphasize the need for a vulnerability prioritization method and a defense technique improvement.
Files
eurosp23posters-final-5.pdf
Files
(357.0 kB)
| Name | Size | Download all |
|---|---|---|
|
md5:539d9c261d675298c24f8b0e532bd731
|
357.0 kB | Preview Download |
Additional details
Related works
- Is part of
- 10.5281/zenodo.8197667 (DOI)