Automating of container images security scanning and analysis

Authors:
Abstract:

The structure and composition of container images, as well as the related security issues, are analyzed. The existing scanning methods for detecting vulnerabilities in container images are analyzed, their advantages and disadvantages are highlighted. An approach addressing the identified shortcomings is proposed. A software prototype of an automated security scanning system for container images with support for dynamic monitoring is developed and tested.