NeuVector Releases New Vulnerability Management Tools
April 14, 2020

NeuVector announced the NeuVector platform includes new features – purpose-built for enterprise DevOpps and security teams – focused on automated end-to-end vulnerabilitty management and protection, expanded registry scanning, and host protection in production environments.

The platform additions include the new Vulnerability and Compliance Explorer for quickly investigating, prioritizing, reporting, and mitigating potentially damaging vulnerability and compliance issues. High performance large-registry scanning and enhanced host (node) security processes have also been added.

NeuVector's new Vulnerability and Compliance Explorer enables DevOps and security teams to:

- Assess the current state of container security by identifying assets, scanning registries, and receiving comprehensive reports.

- Prioritize which images, nodes, or containers are most in need of attention.

- Respond to and mitigate any areas with security and compliance risk.

- Improve ongoing security procedures (and rescan to confirm improvements).

Importantly, the Explorer adds virtual patching as part of its response mechanism. This critical security feature gives DevOps teams the ability to virtually patch vulnerabilities in production containers or hosts without needing to actually patch or remediate that vulnerability in a library or package. Doing so gives enterprises confidence deploying containers in production environments that have vulnerabilities without a current fix available. NeuVector is able to do this by whitelisting all authorized application container behavior – such as network connections, processes, and file activity – either through NeuVector's behavioral learning processes or automatically via security policy as code. Any attempted exploit on a workload or host protected by NeuVector is then detected, alerted, and blocked (depending on user settings). In addition to virtually patching vulnerabilities, these same run-time security capabilities also protect enterprises against embedded malware, zero-day attacks, and insider or phishing attacks.

The platform release also introduces high performance scanning for images in large registries. DevOps teams can deploy additional scanners to run in parallel, quickly scanning registries with thousands or even tens of thousands of images. This new capability builds on NeuVector's market-leading scanner performance that easily handles enterprise requirements.

Additionally, the release strengthens host (node) protection in production environments. Now, just as NeuVector automatically baselines and whitelists container processes to detect suspicious activity, host processes are baselined and hosts can be put into an alert-or-block mode. This enhances existing host protections that include detecting privilege escalations as well as known suspicious processes (such as reverse shells, port scanning, and tunnels). Hosts are automatically scanned for vulnerabilities and run Docker and Kubernetes standards-based or customized compliance checks.

"Today's additions to the NeuVector platform make it even easier for DevOps and security teams to achieve end-to-end vulnerability insight and protection – helping them get in front of any issues and ensure their security compliance," said Gary Duan, CTO, NeuVector. "Alongside our new high-performance parallel scanning and reinforced host process protections, we're proud to make these key platform additions available to our customers. There's no easier or more thorough way to automate container security across the entire lifecycle."

Share this

Industry News

April 10, 2025

Check Point® Software Technologies Ltd.(link is external) announced that its Infinity Platform has been named the top-ranked AI-powered cyber security platform in the 2025 Miercom Assessment.

April 10, 2025

Orca Security announced the Orca Bitbucket App, a cloud-native seamless integration for scanning Bitbucket Repositories.

April 10, 2025

The Live API for Gemini models is now in Preview, enabling developers to start building and testing more robust, scalable applications with significantly higher rate limits.

April 09, 2025

Backslash Security(link is external) announced significant adoption of the Backslash App Graph, the industry’s first dynamic digital twin for application code.

April 09, 2025

SmartBear launched API Hub for Test, a new capability within the company’s API Hub, powered by Swagger.

April 09, 2025

Akamai Technologies introduced App & API Protector Hybrid.

April 09, 2025

Veracode has been granted a United States patent for its generative artificial intelligence security tool, Veracode Fix.

April 09, 2025

Zesty announced that its automated Kubernetes optimization platform, Kompass, now includes full pod scaling capabilities, with the addition of Vertical Pod Autoscaler (VPA) alongside the existing Horizontal Pod Autoscaler (HPA).

April 08, 2025

Check Point® Software Technologies Ltd.(link is external) has emerged as a leading player in Attack Surface Management (ASM) with its acquisition of Cyberint, as highlighted in the recent GigaOm Radar report.

April 08, 2025

GitHub announced the general availability of security campaigns with Copilot Autofix to help security and developer teams rapidly reduce security debt across their entire codebase.

April 08, 2025

DX and Spotify announced a partnership to help engineering organizations achieve higher returns on investment and business impact from their Spotify Portal for Backstage implementation.

April 07, 2025

Appfire announced its launch of the Appfire Cloud Advantage Alliance.

April 07, 2025

Salt Security announced API integrations with the CrowdStrike Falcon® platform to enhance and accelerate API discovery, posture governance and threat protection.

April 07, 2025

Lucid Software has acquired airfocus, an AI-powered product management and roadmapping platform designed to help teams prioritize and build the right products faster.

April 03, 2025

StackGen has partnered with Google Cloud Platform (GCP) to bring its platform to the Google Cloud Marketplace.