https://blog.acolyer.org/2017/04/03/a-study-of-security-vulnerabilities-on-docker-hub/
Tools
- Docker’s Security Scanning Service (for private repository customers)
- Clair
- Banyan collector
- OpenSCAP
- Twistlock
To this list we can also add the following (and maybe others I’m not aware of or have forgotten too):
See also Docker’s ‘Benchmark for Security‘ recommendations. Be careful out there!