
8/18/2020 · Nico Meisenzahl
What this post added
This post details how GitLab Secure and Protect can be used to secure cloud-native applications. It introduces Container Host Security (powered by Falco), Container Network Security (powered by Cilium), Web Application Firewall (powered by ModSecurity and OWASP CRS), and Static Application Security Testing (SAST) using the Golang Security Checker. The post uses a real-world example of a command injection attack on a Golang application running in Kubernetes to demonstrate how these features detect, permit, and help fix vulnerabilities.