76 SWEG / SEI - Next Steps
Abstract
Research has confirmed that attackers generally dont exploit the software base (container). Most attacks are against vulnerabilities created by the configuration of the deployment. Pipeline administrators are faced with many complex and interdependent configuration choices that are critical to maintaining the security expected from hardened containers.
Document Details
- Document Type
- Technical Report
- Publication Date
- Jan 01, 2021
- Accession Number
- AD1137192
Entities
Organizations
- Carnegie Mellon University