Skip to content

Add AMI Report #3

@eaddingtonwhite

Description

@eaddingtonwhite

If devsecops maintained a database/file of public AMI's that have known vulnerabilities/exploits then you could alert a user when they were trying to use in scanned CFN Template. Another Idea would be publishing list of public AMI's devsec ops maintains that are known to be kept up to date with security patches and warning if your not using an approved AMI.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions