Security Control Framework
How GitLab improves cloud native application security and protection

How GitLab improves cloud native application security and protection

8/18/2020 · Nico Meisenzahl

What this post added

This post details how GitLab Secure and Protect can be used to secure cloud-native applications. It introduces Container Host Security (powered by Falco), Container Network Security (powered by Cilium), Web Application Firewall (powered by ModSecurity and OWASP CRS), and Static Application Security Testing (SAST) using the Golang Security Checker. The post uses a real-world example of a command injection attack on a Golang application running in Kubernetes to demonstrate how these features detect, permit, and help fix vulnerabilities.

Read the original post ↗