Container and infrastructure security scanning
One of the most prominent hacks in the last years was SolarWinds, a software company that provides system management tools for network and infrastructure monitoring. Attackers managed to introduce a backdoor in the Orion software that got rolled out to over 30,000 clients and compromised them using this backdoor. Among the clients were the Department of Homeland Security and the Department of Treasury (Oladimeji S., Kerner S. M., 2021).
The SolarWinds attack is considered a software supply chain attack, and this is true for the customers of Orion that installed the compromised version. But the attack on Orion was far more sophisticated than just an update of an infected dependency; the attacker gained access to the SolarWinds network and managed to install a malware called Sunspot on the SolarWinds build servers. Sunspot inserted the backdoor Sunburst into the software builds of Orion by replacing a source file without tracing any build...