#amazoninspector
Level up your cloud security! Get automated #AmazonInspector scans + deep insights, AI root cause analysis, & multi-cloud visibility with #eGEnterprise. Go beyond dashboards for true compliance & peace of mind.

Read more: hubs.li/Q03r22bb0

#AWS #CloudSecurity #DevSecOps
June 6, 2025 at 2:01 PM
✍️ New blog post by GargeeBhatnagar

Explore Code Security Feature as GitLab and GitHub Source Connect in Amazon Inspector

#amazonec2 #awslambda #amazoninspector #aws
Explore Code Security Feature as GitLab and GitHub Source Connect in Amazon Inspector
“ I have checked the documents of AWS to explore code security feature as gitlab and github source...
dev.to
October 14, 2025 at 9:19 PM
Amazon Inspector supports organization-wide management through AWS Organizations policies

Amazon Inspector can now be enabled, configured and managed across your organization using AWS Org policies. With this new capability, you can centr...

#AWS #AwsGovcloudUs #AwsOrganizations #AmazonInspector
Amazon Inspector supports organization-wide management through AWS Organizations policies
Amazon Inspector can now be enabled, configured and managed across your organization using AWS Org policies. With this new capability, you can centrally configure and manage scan types—such as Amazon EC2 scanning, ECR scanning, Lambda standard and Code Scanning, and Code Security — across all the accounts in your organization, selected organizational units (OUs), or individual accounts. The new Inspector policy type within AWS Organization simplifies your service onboarding, management, and ensures consistent, organization-wide vulnerability scanning coverage. This feature helps you maintain a uniform security baseline by automating Inspector enablement through a single AWS Organization policy. To get started, designate a delegated admin within Amazon Inspector, enable the “Inspector policies” policy type in the AWS Organizations console, and create a policy that specifies the desired scan types and Regions. Once attached to your organization root or OUs, Inspector will automatically be enabled for all the specified scan-types across covered accounts . When the Inspector policy is created and attached, all in-scope accounts automatically are aligned with your Organization-wide policy definition. New accounts that join the organization or are moved into an OU with an attached policy, inherit Inspector enablement automatically—reducing operational overhead and eliminating coverage gaps. https://aws.amazon.com/inspector/ is a vulnerability management service that continuously scans AWS workloads including Amazon EC2 instances, container images, AWS Lambda functions, and code repositories for software vulnerabilities, code vulnerabilities, and unintended network exposure across your entire AWS organization. The AWS Organizations Inspector policy for organization-wide enablement is available at no additional cost to Amazon Inspector customers in all AWS commercial, China, and AWS GovCloud (US) Regions where https://aws.amazon.com/about-aws/global-infrastructure/regional-product-services/. To learn more about Amazon Inspector policies within AWS Organization, visit: https://docs.aws.amazon.com/inspector/latest/user/getting_started_tutorial.html https://docs.aws.amazon.com/organizations/latest/userguide/orgs_manage_policies.html
aws.amazon.com
November 19, 2025 at 11:05 PM
🆕 Amazon Inspector now offers code security to shift security left in development, integrating with GitHub and GitLab to identify vulnerabilities in source code, dependencies, and IaC, available in 10 regions.

#AWS #AmazonInspector
Amazon Inspector launches code security to shift security left in development
Today, Amazon Web Services (AWS) announces the general availability of Amazon Inspector code security capabilities, helping you secure your applications before they reach production. This new feature, with native integration to GitHub and GitLab, helps you rapidly identify and prioritize security vulnerabilities and misconfigurations across your application source-code, dependencies, and infrastructure as code (IaC). You can evaluate source-code as builders push or pull code changes in repositories, within CI/CD pipelines, or through scheduled scans. Findings from these scans are surfaced both in the Amazon Inspector console for an aggregated view across the organization and within the source code management platform as fast feedback for the developers. This expansion builds upon existing Amazon Inspector capabilities for scanning Amazon EC2 instances, container images in Elastic Container Registry (ECR), and AWS Lambda functions to provide consistent vulnerability management from compute running on AWS to your code. Amazon Inspector delivers three core capabilities: Static Application Security Testing (SAST) for analyzing application source-code, Software Composition Analysis (SCA) for evaluating third-party dependencies, and Infrastructure as Code (IaC) scanning for validating infrastructure definitions. Amazon Inspector code scanning is available in 10 Regions including: US East (N. Virginia), US West (Oregon), US East (Ohio), Asia Pacific (Sydney), Asia Pacific (Tokyo), Europe (Frankfurt), Europe (Ireland), Europe (London), Europe (Stockholm), and Asia Pacific (Singapore). To learn more and get started with Inspector code security, visit: Getting started with Amazon Inspector Amazon Inspector free trial
aws.amazon.com
June 17, 2025 at 5:41 PM
🆕 AWS Security Hub now monitors Microsoft Azure, offering unified security management across clouds. It finds Azure misconfigurations and provides a single console for risk detection and response, simplifying security operations. Free trial available.

#AWS #AwsSecurityHub #AmazonInspector
AWS Security Hub extends unified security management to Microsoft Azure
Today, AWS announces that AWS Security Hub now monitors Microsoft Azure resources, extending risk analytics, cloud security posture management, vulnerability management, and security response management across both clouds. Many AWS customers running workloads in AWS and Azure have had to operate separate security tools for each environment, making it difficult to prioritize risks holistically or respond consistently. Security Hub now provides a single, unified experience to detect and respond to risks across your AWS and Azure environments. Security Hub automatically discovers Azure resources, including Azure Virtual Machines (VMs), Azure Container Registry (ACR) container images, Azure Function Apps, and Azure identities, and evaluates them for misconfigurations, internet exposure, and software vulnerabilities. You receive posture checks against security standards including the CIS Benchmarks™ for Microsoft Azure Foundations, unified resource inventory, risk and exposure analysis, and automated response through existing EventBridge integrations. AWS and Azure findings appear in the same prioritized view with the same finding formats and automation workflows, so security teams can operate from one console rather than switching between tools. Security Hub includes an independent 30-day free trial to monitor Azure resources that begins once you create your integration with Microsoft Azure. After the trial, you pay the same price for monitoring Azure resources and equivalent AWS resources. You can create an integration to Azure from all AWS Regions where Security Hub is available except Middle East (UAE), Middle East (Bahrain), Asia Pacific (Taipei), and Asia Pacific (New Zealand). You can also create integrations to Microsoft Azure for AWS Security Hub CSPM for posture management checks and Amazon Inspector for vulnerability management independently from AWS Security Hub. To learn more, see AWS Security Hub Pricing and AWS Security Hub documentation.
aws.amazon.com
July 7, 2026 at 11:10 PM
AWS Security Hub extends unified security management to Microsoft Azure

Today, AWS announces that AWS Security Hub now monitors Microsoft Azure resources, extending risk analytics, cloud security posture management, vulnerability management, and security re...

#AWS #AmazonInspector #AwsSecurityHub
AWS Security Hub extends unified security management to Microsoft Azure
Today, AWS announces that AWS Security Hub now monitors Microsoft Azure resources, extending risk analytics, cloud security posture management, vulnerability management, and security response management across both clouds. Many AWS customers running workloads in AWS and Azure have had to operate separate security tools for each environment, making it difficult to prioritize risks holistically or respond consistently. Security Hub now provides a single, unified experience to detect and respond to risks across your AWS and Azure environments. Security Hub automatically discovers Azure resources, including Azure Virtual Machines (VMs), Azure Container Registry (ACR) container images, Azure Function Apps, and Azure identities, and evaluates them for misconfigurations, internet exposure, and software vulnerabilities. You receive posture checks against security standards including the CIS Benchmarks™ for Microsoft Azure Foundations, unified resource inventory, risk and exposure analysis, and automated response through existing EventBridge integrations. AWS and Azure findings appear in the same prioritized view with the same finding formats and automation workflows, so security teams can operate from one console rather than switching between tools. Security Hub includes an independent 30-day free trial to monitor Azure resources that begins once you create your integration with Microsoft Azure. After the trial, you pay the same price for monitoring Azure resources and equivalent AWS resources. You can create an integration to Azure from all AWS Regions where Security Hub is available except Middle East (UAE), Middle East (Bahrain), Asia Pacific (Taipei), and Asia Pacific (New Zealand). You can also create integrations to Microsoft Azure for AWS Security Hub CSPM for posture management checks and Amazon Inspector for vulnerability management independently from AWS Security Hub. To learn more, see https://aws.amazon.com/security-hub/pricing/ and https://docs.aws.amazon.com/securityhub/latest/userguide/what-is-securityhub-v2.html.
aws.amazon.com
July 7, 2026 at 10:05 PM
#うひーメモ
2023-12-05 00:14:15
Amazon Inspectorを利用したコンテナ脆弱性スキャン
#Program
#amazoninspector
#azonejapanadventcalendar
#megazone
Amazon Inspectorを利用したコンテナ脆弱性スキャン
はじめにMEGAZONE株式会社のテック陣MEGAZONEのゆかいな仲間たちがおくるMegazoneJapanAdventCalendarの日目のエントリーですA
qiita.com
December 4, 2023 at 3:14 PM
#うひーメモ
2023-12-04 00:39:08
Amazon Inspector の Amazon EC2 向けエージェントレス脆弱性評価
#Program
#amazoninspector
#amazon
#inspector
Amazon Inspector の Amazon EC2 向けエージェントレス脆弱性評価
概要今までSSMエージェントをインストールしてECインスタンスを評価新機能SSMエージェントがインストールされていないECインスタンスに対してもInspectorエージェ
qiita.com
December 3, 2023 at 3:39 PM
#うひーメモ
2023-12-04 00:18:32
Amazon InspectorでEC2の脆弱性を新旧OS比較
#Program
#amazoninspector
#amazon
Amazon InspectorでEC2の脆弱性を新旧OS比較
前回下の内容でAmazonInspectorをセットアップしました今回はAmazon
qiita.com
December 3, 2023 at 3:18 PM
#うひーメモ
2023-12-04 00:14:50
Amazon Inspectorで脆弱性をらくらく検出  概要と初回セットアップ
#Program
#amazoninspector
#lambda
#イメージ
Amazon Inspectorで脆弱性をらくらく検出  概要と初回セットアップ
AmazonInspectorとはAmazonInspectorは自動脆弱性管理サービスでECインスタンスLambda関数コンテナイメージ毎の脆弱性と意図しないインターネット
qiita.com
December 3, 2023 at 3:14 PM
#うひーメモ
2023-11-30 00:18:06
[アップデート][プレビュー]Amazon Inspectorがエージェントレスなスキャンに対応しました #AWSreInvent
#技術系ブログ等
#アップデート
#amazoninspector
#awsreinvent
[アップデート][プレビュー]Amazon Inspectorがエージェントレスなスキャンに対応しました #AWSreInvent
はじめにこんにちはAWS事業本部コンサルティング部のみなみです今回紹介するアップデートですがAmazonInspectorがエージェントレスなスキャンにも対応しました
dev.classmethod.jp
November 29, 2023 at 3:18 PM
#うひーメモ
2023-11-27 19:08:12
[アップデート]Amazon InspectorのLambdaコードスキャンが生成AIを活用して修復コードを提示してくれるようになりました #AWSreInvent
#技術系ブログ等
#アップデート
#amazoninspector
#awsreinvent
[アップデート]Amazon InspectorのLambdaコードスキャンが生成AIを活用して修復コードを提示してくれるようになりました #AWSreInvent
こんにちはAWS事業本部福岡オフィスのべこみんbecominnです遂にAWSreInventが始まりましたねそれに合わせてたくさんのアップデートが出てきました本記事ではそのうちの一つ
dev.classmethod.jp
November 27, 2023 at 10:08 AM
#うひーメモ
2023-11-14 12:05:31
Amazon Inspector のLambdaのスキャン除外タグ付けをAWS Organizationsのサービスコントロールポリシー (SCP)で防止する
#技術系ブログ等
#amazoninspector
#amazoni
#awsorganizations
Amazon Inspector のLambdaのスキャン除外タグ付けをAWS Organizationsのサービスコントロールポリシー (SCP)で防止する
AWS事業本部の梶原福岡オフィスですAmazonInspectorはソフトウェアの脆弱性やネットワークへの意図しない公開がないかなどを継続的にスキャンする脆弱性管理サービスになりますこちらのAmazonI
dev.classmethod.jp
November 14, 2023 at 3:05 AM
#うひーメモ
2023-11-13 18:03:11
Amazon Inspector のEC2のスキャン除外タグ付けをAWS Organizationsのサービスコントロールポリシー (SCP)で防止する
#技術系ブログ等
#amazoninspector
#amazoni
#awsorganizations
Amazon Inspector のEC2のスキャン除外タグ付けをAWS Organizationsのサービスコントロールポリシー (SCP)で防止する
AWS事業本部の梶原福岡オフィスですAmazonInspectorはソフトウェアの脆弱性やネットワークへの意図しない公開がないかなどを継続的にスキャンする脆弱性管理サービスになりますこちらのAmazonI
dev.classmethod.jp
November 13, 2023 at 9:03 AM
#うひーメモ
2023-10-27 17:10:59
[アップデート] Amazon Inspector で特定の EC2 インスタンスをスキャン対象外にできるようになっていました
#技術系ブログ等
#アップデート
#amazoninspector
#よくある質問
[アップデート] Amazon Inspector で特定の EC2 インスタンスをスキャン対象外にできるようになっていました
札幌オフィスの中川ですAmazonInspectorのよくある質問を見ていると特定のECインスタンスをスキャンの対象外にできる記述がありましたドキュメント履歴を見ると年月から特定のE
dev.classmethod.jp
October 27, 2023 at 8:11 AM
📰 Nuevo blog de #AWSEspanol: Amazon Inspector mejora la seguridad de contenedores mediante el mapeo de imágenes de Amazon ECR a contenedores en ejecución

#AmazonInspector #ContainerSecurity #CloudComputing #AWSECR #VulnerabilityManagement
Amazon Inspector mejora la seguridad de contenedores mediante el mapeo de imágenes de Amazon ECR a contenedores en ejecución | Amazon Web Services
Tradución del blog original Amazon Inspector enhances container security by mapping Amazon ECR images to running containers Al ejecutar cargas de trabajo en contenedores, es fundamental comprender cómo...
ift.tt
May 24, 2025 at 5:17 PM
Amazon Inspector launches improved agent-based scanning for EC2

Amazon Inspector now offers improved agent-based EC2 scanning with the new Inspector VM Scanner, delivering expanded detection coverage and reduced CPU utilization on your EC2 instances. Security teams can now...

#AWS #AmazonInspector
Amazon Inspector launches improved agent-based scanning for EC2
Amazon Inspector now offers improved agent-based EC2 scanning with the new Inspector VM Scanner, delivering expanded detection coverage and reduced CPU utilization on your EC2 instances. Security teams can now detect vulnerabilities across a broader range of software and applications on their agent-based EC2 instances, including WordPress, Apache HTTP Server, Python packages, and Ruby gems, while consuming fewer compute resources during scans. The Inspector VM Scanner replaces the previous scanning engine for agent-based EC2 with a modern architecture optimized for performance. Customers benefit from reduced CPU utilization during vulnerability scans, minimizing the impact on production workloads. The expanded ecosystem detection brings agent-based scanning to parity with agentless scanning coverage, ensuring consistent vulnerability findings regardless of which scanning method you use. To get started, opt in to the Inspector VM Scanner from the Amazon Inspector console or API. Delegated administrator accounts can enable the new scanner across their entire AWS Organization, while standalone accounts can enable it individually. No additional IAM instance profile roles are required on your EC2 instances. Existing SSM Agent configurations continue to work with no changes needed. Amazon Inspector is a vulnerability management service that continuously scans AWS workloads for software vulnerabilities and unintended network exposure. The Inspector VM Scanner for agent-based EC2 scanning is available in all AWS Regions where Amazon Inspector is available at no additional cost. Existing Amazon Inspector agent-based EC2 scanning pricing applies. To learn more, visit: https://docs.aws.amazon.com/inspector/latest/user/inspector-vm-scanner.html https://docs.aws.amazon.com/inspector/latest/user/what-is-inspector.html
aws.amazon.com
June 1, 2026 at 10:05 PM
Amazon Inspector expands agentless EC2 scanning and introduces Windows KB-based findings

Amazon Inspector now offers expanded agentless EC2 scanning with enhanced detection coverage, including new support for Windows operating system vulnerability scanning...

#AWS #AmazonInspector #AwsGovcloudUs
Amazon Inspector expands agentless EC2 scanning and introduces Windows KB-based findings
Amazon Inspector now offers expanded agentless EC2 scanning with enhanced detection coverage, including new support for Windows operating system vulnerability scanning without requiring an agent. Security teams and IT administrators can now detect vulnerabilities across a broader range of software and applications on their EC2 instances — including WordPress, Apache HTTP Server, Python packages, and Ruby gems — as well as Windows OS vulnerabilities, all through agentless scanning. Customers automatically receive findings for newly supported software and applications with no configuration changes required. Amazon Inspector is also introducing Windows Knowledge Base (KB)-based findings for Windows OS vulnerabilities. Rather than receiving a separate finding for each CVE addressed by a single Microsoft patch, customers now receive a single consolidated KB finding that groups all related CVEs together. Each KB finding surfaces the highest CVSS score, EPSS score, and exploit availability from its constituent CVEs, and includes a direct link to the relevant Microsoft KB article — making it straightforward to understand exactly which patch to apply and why. All existing CVE-based Windows OS findings will automatically transition to KB-based findings. All existing CVE-based Windows OS findings will automatically transition to KB-based findings, and customers do not need to take any additional action. Both capabilities are available in all AWS Regions where Amazon Inspector is available. To learn more, visit the https://aws.amazon.com/inspector/ and the https://docs.aws.amazon.com/inspector/latest/user/what-is-inspector.html. 
aws.amazon.com
March 18, 2026 at 5:05 PM
Amazon Inspector adds Java Gradle support and expands ecosystem coverage

Amazon Inspector scanning for Lambda functions and Elastic Container Registry (ECR) images now supports Java Gradle inventory and vulnerability scanning. This release also adds covera...

#AWS #AmazonInspector #AwsGovcloudUs
Amazon Inspector adds Java Gradle support and expands ecosystem coverage
Amazon Inspector scanning for Lambda functions and Elastic Container Registry (ECR) images now supports Java Gradle inventory and vulnerability scanning. This release also adds coverage for MySQL, MariaDB, PHP, Jenkins-core, 7zip (on Windows), Elasticsearch, and Curl/LibCurl. This update enhances Amazon Inspector's ability to detect vulnerabilities and misconfigurations across a broader range of applications and environments. Amazon Inspector is an automated vulnerability management service that continually scans AWS workloads for software vulnerabilities and unintended network exposure, helping organizations improve their security posture and meet compliance requirements. The new Java Gradle support allows Inspector to scan Java dependencies based on gradle.lockfile content, providing comprehensive vulnerability assessments for Java applications. When you use Inspector to scan Lambda functions and ECR images, you will now see findings for MySQL, MariaDB, PHP, Jenkins-core, 7zip (on Windows), Elasticsearch, and Curl/LibCurl installations. These enhancements enable more accurate detection of vulnerabilities in packages installed outside of package managers, improving overall security coverage for AWS customers using these technologies. To learn more about Amazon Inspector and how it can help secure your AWS workloads, visit the https://aws.amazon.com/inspector/. For a full list of Amazon Inspector supported operating systems and programming languages, see the https://docs.aws.amazon.com/inspector/latest/user/supported.html. You can start using these new features today in all AWS Regions where Amazon Inspector is available.
aws.amazon.com
January 12, 2026 at 7:05 PM
Amazon Inspector now available in additional AWS Regions

Amazon Inspector is now available in Asia Pacific (Thailand), Middle East (UAE), Asia Pacific (Hyderabad), Asia Pacific (Malaysia), Asia Pacific (Melbourne), Mexico (Central), Israel (Tel Aviv), Canada West (Calgar...

#AWS #AmazonInspector
Amazon Inspector now available in additional AWS Regions
Amazon Inspector is now available in Asia Pacific (Thailand), Middle East (UAE), Asia Pacific (Hyderabad), Asia Pacific (Malaysia), Asia Pacific (Melbourne), Mexico (Central), Israel (Tel Aviv), Canada West (Calgary), and Europe (Spain). Amazon Inspector is a vulnerability management service that continually scans AWS workloads including Amazon EC2 instances, container images, and AWS Lambda functions for software vulnerabilities and unintended network exposure across your AWS organization. With this expansion, Amazon Inspector extends its security coverage to these regions, designed to help customers automatically discover workloads, conduct continuous vulnerability assessments, and receive actionable security findings. The service is designed to detect newly launched Amazon EC2 instances, Lambda functions, and eligible container images pushed to Amazon ECR and scan them for software vulnerabilities and unintended network exposure. All accounts new to Amazon Inspector are eligible for a 15-day free trial to evaluate the service and estimate its cost. During the trial, all eligible Amazon EC2 instances, AWS Lambda functions, and container images pushed to Amazon ECR are continually scanned at no cost. After the trial period, you will be charged based on the number of scanned resources. Visit the Amazon Inspector https://aws.amazon.com/inspector/pricing/ for more details. To get started with https://aws.amazon.com/inspector/ visit our documentation or begin your https://aws.amazon.com/inspector/pricing/.
aws.amazon.com
July 1, 2025 at 6:05 PM
Amazon Inspector launches code security to shift security left in development

Today, Amazon Web Services (AWS) announces the general availability of Amazon Inspector code security capabilities, helping you secure your applications before they reach production. This new f...

#AWS #AmazonInspector
Amazon Inspector launches code security to shift security left in development
Today, Amazon Web Services (AWS) announces the general availability of Amazon Inspector code security capabilities, helping you secure your applications before they reach production. This new feature, with native integration to GitHub and GitLab, helps you rapidly identify and prioritize security vulnerabilities and misconfigurations across your application source-code, dependencies, and infrastructure as code (IaC). You can evaluate source-code as builders push or pull code changes in repositories, within CI/CD pipelines, or through scheduled scans. Findings from these scans are surfaced both in the Amazon Inspector console for an aggregated view across the organization and within the source code management platform as fast feedback for the developers. This expansion builds upon existing Amazon Inspector capabilities for scanning Amazon EC2 instances, container images in Elastic Container Registry (ECR), and AWS Lambda functions to provide consistent vulnerability management from compute running on AWS to your code. Amazon Inspector delivers three core capabilities: Static Application Security Testing (SAST) for analyzing application source-code, Software Composition Analysis (SCA) for evaluating third-party dependencies, and Infrastructure as Code (IaC) scanning for validating infrastructure definitions. Amazon Inspector code scanning is available in 10 Regions including: US East (N. Virginia), US West (Oregon), US East (Ohio), Asia Pacific (Sydney), Asia Pacific (Tokyo), Europe (Frankfurt), Europe (Ireland), Europe (London), Europe (Stockholm), and Asia Pacific (Singapore). To learn more and get started with Inspector code security, visit: https://docs.aws.amazon.com/inspector/latest/user/getting_started_tutorial.html https://aws.amazon.com/inspector/pricing/
aws.amazon.com
June 17, 2025 at 6:05 PM
Amazon Inspector enhances container security by mapping ECR images to running containers

Amazon Inspector now automatically maps your Amazon Elastic Container Registry (Amazon ECR) images to specific tasks running on Amazon Elastic Container Service (Amazo...

#AWS #AwsGovcloudUs #AmazonInspector
Amazon Inspector enhances container security by mapping ECR images to running containers
Amazon Inspector now automatically maps your Amazon Elastic Container Registry (Amazon ECR) images to specific tasks running on Amazon Elastic Container Service (Amazon ECS) or pods running on Amazon Elastic Kubernetes Service (Amazon EKS), helping identify where the images are actively in use. This enables you to focus your limited resources on patching most critical vulnerable images that are associated with running workloads, improving security and mean- time to remediation. With this launch, you can use Amazon Inspector console or APIs to identify your actively used container images, when you last used an image, and which clusters are running the image. This information will be included in your findings and resource coverage details, and will be routed to EventBridge. You can also control how long an image is monitored by Inspector after its ‘last in use’ date by updating the ECR re-scan duration using the console or APIs. This is in addition to the existing push and pull date settings. Your Amazon ECR images with continuous scanning enabled on Amazon Inspector will automatically get this updated data within your Amazon Inspector findings.   https://aws.amazon.com/inspector/ is a vulnerability management service that continually scans AWS workloads including Amazon EC2 instances, container images, and AWS Lambda functions for software vulnerabilities, code vulnerabilities, and unintended network exposure across your entire AWS organization. This feature is available at no additional cost to Amazon Inspector customers scanning thier container images in Amazon Elastic Container Registry (ECR). Feature is available in all commercial and AWS GovCloud (US) Regions where https://aws.amazon.com/about-aws/global-infrastructure/regional-product-services/. https://docs.aws.amazon.com/inspector/latest/user/getting_started_tutorial.html https://aws.amazon.com/inspector/pricing/
aws.amazon.com
May 19, 2025 at 7:05 PM
Amazon Inspector expands ECR support for minimal container base images and enhanced detections

Today, we are excited to announce support for scratch, distroless (Debian/Ubuntu based), and Chainguard image scanning with Amazon Inspector. With the expanded s...

#AWS #AmazonInspector #AwsGovcloudUs
Amazon Inspector expands ECR support for minimal container base images and enhanced detections
Today, we are excited to announce support for scratch, distroless (Debian/Ubuntu based), and Chainguard image scanning with Amazon Inspector. With the expanded support for ECR images, Amazon Inspector extends its security coverage to minimal and security-focused container bases, enabling teams to maintain robust security practices even with highly optimized container environments. For ECR scanning, Amazon Inspector expands scanning to additional ecosystems including Go toolchain, Oracle JDK & JRE, Amazon Corretto, Apache Tomcat, Apache httpd, Wordpress (core, themes, plugins), Google Puppeteer (Chrome embedding), and Node.js runtime. This enhancement helps customers identify vulnerabilities in ecosystem components and gain visibility into third party software. The same functionality is also available via the Amazon Inspector SBOM Scan API. Additionally, Amazon Inspector now supports identifying https://docs.aws.amazon.com/inspector/latest/user/supported.html#formerly-supported-os running on Amazon EC2 instances and Amazon ECR container images. Amazon Inspector will generate a finding on resources using a discontinued operating system solely for informational purposes, aiding in the prioritization of risk mitigation strategies. https://aws.amazon.com/inspector/ is a vulnerability management service that continually scans AWS workloads including Amazon EC2 instances, container images, and AWS Lambda functions for software vulnerabilities, code vulnerabilities, and unintended network exposure across your entire AWS organization. Enhanced detections, and support for additional operating systems for ECR scanning is available in all commercial and AWS GovCloud (US) Regions where https://aws.amazon.com/about-aws/global-infrastructure/regional-product-services/. https://docs.aws.amazon.com/inspector/latest/user/getting_started_tutorial.html https://aws.amazon.com/inspector/pricing/
aws.amazon.com
March 12, 2025 at 7:05 PM