HCP Packer adds SBOM vulnerability scanning
Article excerpt
Highlighted: the sentence this signal was extracted from
HCP Packer adds SBOM vulnerability scanning. You can now scan the components of your image SBOMs and check them against a known vulnerability database in HCP Packer. HashiCorp is excited to announce the release of SBOM vulnerability scanning, now available in public beta for HCP Packer. HCP Packer is a powerful tool that helps organizations manage the lifecycle of their image artifacts across hybrid-cloud environments. With this release, HashiCorp aim to provide platform teams with further visibility into their images to help address vulnerabilities earlier in the deployment process and shift security left. Artifact visibility. In today's hybrid-cloud world, system images (such as AMIs for Amazon EC2, virtual machines, Docker containers, and more) are the foundation of modern computing infrastructure. They also sit at the very start of the software security supply chain. As organizations increasingly depend on a complex software supply chain that includes both third-party and in-house software packages and dependencies, the need for comprehensive visibility into these components has never been more critical. A popular solution to address artifact visibility is to keep a record of the components with a software bill of materials (SBOM) for each artifact. SBOMs are like an ingredient list on a food item; they list the internal parts that make up the image. Background...
Keep reading with a free account
The rest of this article, and every signal for HashiCorp, is in your free account.
