-
Notifications
You must be signed in to change notification settings - Fork 1
Open
Description
If devsecops maintained a database/file of public AMI's that have known vulnerabilities/exploits then you could alert a user when they were trying to use in scanned CFN Template. Another Idea would be publishing list of public AMI's devsec ops maintains that are known to be kept up to date with security patches and warning if your not using an approved AMI.
slietz
Metadata
Metadata
Assignees
Labels
No labels