Continuous Vulnerability Scanning for macOS VM images in your iOS CI/CD
Native macOS Scanner
Container-like vulnerability scanner for Anka macOS images
- Detect vulnerabilities before they are exploited in your iOS or native macOS app build and test steps.
- Monitoring for compliance of configuration and user settings in macOS build and test environments is not enough.
- Scan any type of macOS file, folder, library, tool, agent, and package for known CVEs.
- At-rest VM scanning to minimize complexity and effort in scanning for vulnerabilities.
- Vulnerability scanning support for Intel or ARM macOS VMs.
Vulnerability Management
Easily Detect and Remediate Vulnerabilities
- Identify known vulnerabilities associated with all packages, libraries, agents on macOS filesystem against an NVD database.
- Create a customized and comprehensive BOM (Bill of Material) for consumption by security and development teams.
- Detailed information for identified vulnerabilities, including location on the macOS file system and their impact/severity.
- Customize excluded vulnerabilities to manage risk acceptance.
- Remediation instructions for identified vulnerabilities.
Continuous Scanning
Bake in continuous vulnerability scanning in your iOS and native macOS application CI/CD pipelines
- Scan your iOS build and test image templates before pushing to the Registry.
- Continuously scan image templates in your registry for newly discovered vulnerabilities.
- Automate report generation and even vulnerability patches in your VMs to then be pushed and used for your iOS CI/CD jobs.
- Runs within your local network/environment, eliminating the sharing of code, configurations, and data with third parties or over the internet.