Breaking Free from Vulnerability Scanning Noise - Automated VEX Aggregation for Accuracy
CNCF [Cloud Native Computing Foundation] via YouTube
Python, Prompt Engineering, Data Science — Build the Skills Employers Want Now
Build the Finance Skills That Lead to Promotions — Not Just Certificates
Overview
Google, IBM & Meta Certificates — All 10,000+ Courses at 40% Off
One annual plan covers every course and certificate on Coursera. 40% off for a limited time.
Get Full Access
Learn about vulnerability scanning accuracy and noise reduction in this 38-minute conference talk from KubeCon + CloudNativeCon. Explore how Vulnerability Exploitability eXchange (VEX) addresses false-positive results in vulnerability scanning through VEX Hub, a centralized repository for automated VEX document aggregation. Discover the challenges of standardized vulnerability scanning distribution and how VEX Hub's architecture enables software maintainers to adopt VEX while seamlessly integrating with existing scanner workflows. See a practical demonstration of VEX Hub's implementation with Trivy, an open-source security scanner, and understand how this integration delivers more precise and actionable security scanning results for users.
Syllabus
Breaking Free from Vulnerability Scanning Noise: Automated VEX Aggregation for Accu... Teppei Fukuda
Taught by
CNCF [Cloud Native Computing Foundation]