Jerbi was speaking ahead of the release of Aqua 4.0, which introduces tighter controls for Linux hosts running containers which should address vulnerabilities like runc. The new version also includes targets serverless, with functions discovery and deep scanning of functions packages and dependencies for known vulnerabilities. The updated platform will also offer permissions assessment for serverless functions, spotting over and under-used permissions, and scanning for secrets and hard-coded keys in functions.
