Skip to content

Commit

Permalink
fix report url
Browse files Browse the repository at this point in the history
Signed-off-by: Michael Ducy <michael@ducy.org>
  • Loading branch information
mfdii authored and poiana committed Dec 17, 2019
1 parent 8acde73 commit bbde7c8
Showing 1 changed file with 2 additions and 2 deletions.
4 changes: 2 additions & 2 deletions content/en/blog/falco-security-audit.md
Original file line number Diff line number Diff line change
Expand Up @@ -3,9 +3,9 @@ title: Falco Security Audit
date: 2019-12-16
author: Michael Ducy
---
Regularly auditing a code base is an important process in releasing secure software. Audits can be particularly important for open source projects that rely on code from a wide variety of contributors. We are happy to announce the release of Falco’s first [security audit](https://github.com/falcosecurity/falco/blob/dev/FAL-01-report.pdf) which was performed through Falco’s participation as a [CNCF](https://www.cncf.io) Sandbox project. A big thanks to the CNCF for sponsoring the audit, and to the [Cure53](https://cure53.de/) team who performed the audit.
Regularly auditing a code base is an important process in releasing secure software. Audits can be particularly important for open source projects that rely on code from a wide variety of contributors. We are happy to announce the release of Falco’s first [security audit](https://github.com/falcosecurity/falco/blob/dev/audits/SECURITY_AUDIT_2019_07.pdf) which was performed through Falco’s participation as a [CNCF](https://www.cncf.io) Sandbox project. A big thanks to the CNCF for sponsoring the audit, and to the [Cure53](https://cure53.de/) team who performed the audit.

Overall the security audit discovered 3 potential vulnerabilities (1 Critical, 2 High) and 2 miscellaneous issues (Low). You can find the details of the audit and the vulnerabilities in [the full published report (pdf).](https://github.com/falcosecurity/falco/blob/dev/FAL-01-report.pdf) Below you can find a brief description of each vulnerability, and the implemented remediation. In addition to the implemented remediations, these issues have helped us better understand how the Falco team can refactor the Falco architecture to reduce the chance of security vulnerabilities.
Overall the security audit discovered 3 potential vulnerabilities (1 Critical, 2 High) and 2 miscellaneous issues (Low). You can find the details of the audit and the vulnerabilities in [the full published report (pdf).](https://github.com/falcosecurity/falco/blob/dev/audits/SECURITY_AUDIT_2019_07.pdf) Below you can find a brief description of each vulnerability, and the implemented remediation. In addition to the implemented remediations, these issues have helped us better understand how the Falco team can refactor the Falco architecture to reduce the chance of security vulnerabilities.

Users are encouraged to upgrade to Falco 0.18.0 which contains fixes for each of the issues below.

Expand Down

0 comments on commit bbde7c8

Please sign in to comment.