SecCo: Automated Services to Secure Containers in the DevOps Paradigm
Contributo in Atti di convegno
Data di Pubblicazione:
2023
Abstract:
Containers are core building blocks for creating applications based on the microservice paradigm. However, assessing their security is complex, especially when deployed in distributed and heterogeneous scenarios. Moreover, developers and IT operators should only focus on integration and delivery processes without dealing with tasks to guarantee securing requirements. To overcome such issues, in this paper, we introduce the ideas at the basis of Project SecCo (Securing Containers), i.e., an architecture for extending and improving current security assessment methodologies into the continuous integration and continuous delivery DevOps pipeline. To this end, SecCo proposes a framework able to orchestrate new automatic security services to prevent and reduce security vulnerabilities in the design, implementation, and deployment phases, and to identify and mitigate, at runtime, attempts to exploit them. The paper also showcases the main research challenges to be addressed for pursuing the vision of SecCo.
Tipologia CRIS:
04.01 Contributo in Atti di convegno
Keywords:
information hiding; covert channels; container security; cybersecurity; microservices
Elenco autori:
Caviglione, Luca
Link alla scheda completa: