Code security enhancements, full scan support, image vulnerability triaging and more

April 14, 2024

Last month has been one for the coders with powerful releases empowering you to write more secure code. Adding 150 policies for AWS services takes our total to 610 misconfiguration policies, making checks even more comprehensive. Read on to see more details.

Code Security Enhancements

With this release, there are major enhancements to Code Security. Dedicated sections for Secrets and Vulnerabilities to dig deeper into individual occurrences of Vulnerabilities and mapping them to files and scans. Helps with Triaging the Detected Secrets & Vulnerabilities.

Full Scan Support

Initiate a Full Scan for GitHub or Bitbucket repositories right from the Cloudanix Console. This provides our users greater flexibility to initiate Full Scan at will. This is on top of the Weekly Automated Full Scans.

PR Check, Status and Comments

With the latest release, customers can enforce PR Checks to fail builds based on an acceptable condition, add automated comments in the PR based on Findings and Insert Findings Status in the PRs. This reduces friction between Engineering and Security by limiting the Security Gaps from Code from going to Production.

Image Vulnerability Triage

Slice and Dice Image Vulnerability data even further using CVE or Package based filters.

Misconfigurations Policy Enhancements

We have enhanced our Misconfig Policies Set for AWS by another 150 Policies. This brings our total policies over 610 for AWS. These new policies provide parity with AWS Config covering Security Rules across most of the AWS Services.
Explore these features here

TODO:// is not an option for Cloud Security

We are also available at

Insights from Cloudanix