Average Ratings 0 Ratings
Average Ratings 0 Ratings
Description
Minimus provides radically minimal container and VM images that reduce cloud environment vulnerabilities by constructing images from upstream project sources with only the software necessary to run the application. Created by the Twistlock team, leaders in container security and contributors to NIST SP 800-190, Minimus focuses on shrinking the attack surface through images built from scratch. Fully OCI compliant, these images are easy to deploy—requiring just a single line change in your deployment files. This approach significantly reduces low-value, time-consuming remediation work for developers and simplifies deployment and management for operations teams using familiar tools. Minimus delivers remarkable security improvements with clear risk reduction and fast time to value. The images are rebuilt daily to remove over 95% of known Common Vulnerabilities and Exposures (CVEs), preventing many security issues before they arise. By eliminating vulnerabilities at their source, Minimus breaks the cycle of endless remediation. It provides a practical, efficient solution to cloud security challenges.
Description
Qualys Cloud Security offers a vulnerability analysis plug-in specifically designed for the CI/CD tool Jenkins, with plans to expand to additional platforms such as Bamboo, TeamCity, and CircleCI in the near future. Users can conveniently download these plug-ins straight from the container security module. This integration allows security teams to engage in the DevOps workflow, ensuring that vulnerable images are blocked from entering the system, while developers receive practical insights to address vulnerabilities effectively. It is possible to establish policies aimed at preventing the inclusion of vulnerable images in repositories, with settings adjustable based on factors like vulnerability severity and particular QIDs. The plug-in also provides an overview of the build, detailing vulnerabilities, information on software that can be patched, available fixed versions, and the specific image layers affected. Given that container infrastructure is inherently immutable, it is essential for containers to be consistent with the original images they are created from, thus necessitating rigorous security measures throughout the development lifecycle. By implementing these strategies, organizations can enhance their ability to maintain secure and compliant container environments.
API Access
Has API
No
API Access
Has API
Yes
Screenshots View All
No images available
Integrations
Bamboo
No
BitSight
No
C1Risk
No
CircleCI
No
Complyance
No
CyberDNA Command and Control Center
No
Cyclops
No
Docker
No
HivePro Uni5
No
Jenkins
No
Integrations
Bamboo
Yes
BitSight
Yes
C1Risk
Yes
CircleCI
Yes
Complyance
Yes
CyberDNA Command and Control Center
Yes
Cyclops
Yes
Docker
Yes
HivePro Uni5
Yes
Jenkins
Yes
Pricing Details
No price information available.
Free Trial
Yes
Free Version
Yes
Pricing Details
No price information available.
Free Trial
Yes
Free Version
No
Deployment
Web-Based
No
On-Premises
No
iPhone App
No
iPad App
No
Android App
No
Windows
No
Mac
No
Linux
No
Chromebook
No
Deployment
Web-Based
Yes
On-Premises
No
iPhone App
No
iPad App
No
Android App
No
Windows
No
Mac
No
Linux
Yes
Chromebook
No
Customer Support
Business Hours
Yes
Live Rep (24/7)
No
Online Support
Yes
Customer Support
Business Hours
No
Live Rep (24/7)
Yes
Online Support
Yes
Types of Training
Training Docs
Yes
Webinars
No
Live Training (Online)
Yes
In Person
No
Types of Training
Training Docs
Yes
Webinars
No
Live Training (Online)
No
In Person
No
Vendor Details
Company Name
Minimus
Founded
2022
Website
www.minimus.io
Vendor Details
Company Name
Qualys
Founded
1999
Country
United States
Website
www.qualys.com/apps/container-security/
Product Features
Container Security
Access Roles / Permissions
No
Application Performance Tracking
No
Centralized Policy Management
No
Container Stack Scanning
No
Image Vulnerability Detection
No
Reporting
No
Testing
No
View Container Metadata
No
Product Features
Container Security
Access Roles / Permissions
No
Application Performance Tracking
No
Centralized Policy Management
No
Container Stack Scanning
No
Image Vulnerability Detection
No
Reporting
No
Testing
No
View Container Metadata
No