You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Test of middleware components with known vulnerabilities:
217
+
Test of backend components with known vulnerabilities:
218
218
risk: Components of the middleware might have vulnerabilities.
219
-
measure: Tests for known vulnerabilities in components of the middleware are performed.
219
+
measure: Tests for known vulnerabilities in components of the backend/middleware are performed.
220
220
difficultyOfImplementation:
221
221
knowledge: 1
222
222
time: 2
@@ -529,16 +529,18 @@ Static depth for infrastructure:
529
529
- <a href="https://kubesec.io/">kubesec</a>
530
530
samm2: v-security-testing|A|1
531
531
Test of infrastructure components for known vulnerabilities:
532
-
risk: "Infrastructure components might have vulnerabilities."
533
-
measure: "Test for known vulnerabilities in infrastructure components. Often, the only way to respond to known vulnerabilities in operating system packages is to accept the risk and wait for a patch."
532
+
risk: "Infrastructure components might have vulnerabilities."
533
+
measure: "Test for known vulnerabilities in infrastructure components. Often, the only way to respond to known vulnerabilities in operating system packages is to accept the risk and wait for a patch. As the patch needs to be applied fast when it is available, this activity depends on 'Usage of a maximum life for images'."
0 commit comments