Managing the Minimization of a Container Attack Surface - Neil Carpenter - ASW #344

19/08/2025 1h 8min
Managing the Minimization of a Container Attack Surface - Neil Carpenter - ASW #344

Listen "Managing the Minimization of a Container Attack Surface - Neil Carpenter - ASW #344"

Episode Synopsis

A smaller attack surface should lead to a smaller list of CVEs to track, which in turn should lead to a smaller set of vulns that you should care about. But in practice, keeping something like a container image small has a lot of challenges in terms of what should be considered minimal. Neil Carpenter shares advice and anecdotes on what it takes to refine a container image and to change an org's expectations that every CVE needs to be fixed. Show Notes: https://securityweekly.com/asw-344

More episodes of the podcast Application Security Weekly (Video)