PHP UK 2023 - King Vault

Discover NuVecto's cutting-edge security solutions that strengthen apps, containers, and systems with static analysis and threat detection.

Key takeaways
  • Use static analysis to detect vulnerabilities
  • Scanning images is important for security
  • NuVecto scans not only containers but also the host system
  • Integration with external systems is key to automation
  • Using regular expressions can detect risky behavior
  • The Linux kernel is an important layer for security
  • Use NuVecto to automate static analysis and threat detection
  • Automating security can help reduce the attack surface
  • Complexity is a challenge in security
  • Security is like layers - each layer must be secure
  • Vulnerabilities can be learned and blocked
  • NuVecto can also learn from unknown threats
  • Scanning for SQL injection is important
  • Encrypting traffic is important, but not enough
  • Trust is important in security
  • Security is always a trade-off between security and functionality
  • There are many tools and solutions available for security:
    • Nexus
    • Sonar
    • GitLab
    • GitHub
    • etc.
  • There are many things that can be done to improve security:
    • Use static analysis
    • Limit the amount of processes
    • Block unencrypted traffic
    • Use NuVecto
    • etc.
  • Security is like a house with many doors - each door must be secure
  • NuVecto is installed directly into the cluster
  • The orchestration system is important for security
  • Integration with other tools and solutions is key to automation
  • Security is always a balance between security and functionality