VOOZH about

URL: https://thenewstack.io/snyk-announced-new-container-product-what-to-know/

⇱ Snyk Releases a Kubernetes-focused Container Security Platform - The New Stack


TNS
SUBSCRIBE
Join our community of software engineering leaders and aspirational developers. Always stay in-the-know by getting the most important news and exclusive content delivered fresh to your inbox to learn more about at-scale software development.
REQUIRED
It seems that you've previously unsubscribed from our newsletter in the past. Click the button below to open the re-subscribe form in a new tab. When you're done, simply close that tab and continue with this form to complete your subscription.
The New Stack does not sell your information or share it with unaffiliated third parties. By continuing, you agree to our Terms of Use and Privacy Policy.
Welcome and thank you for joining The New Stack community!
Please answer a few simple questions to help us deliver the news and resources you are interested in.
REQUIRED
REQUIRED
REQUIRED
REQUIRED
REQUIRED
Great to meet you!
Tell us a bit about your job so we can cover the topics you find most relevant.
REQUIRED
REQUIRED
REQUIRED
REQUIRED
REQUIRED
Welcome!

We’re so glad you’re here. You can expect all the best TNS content to arrive Monday through Friday to keep you on top of the news and at the top of your game.

What’s next?

Check your inbox for a confirmation email where you can adjust your preferences and even join additional groups.

Follow TNS on your favorite social media networks.

Become a TNS follower on LinkedIn.

Check out the latest featured and trending stories while you wait for your first TNS newsletter.

PREV
1 of 2
NEXT
VOXPOP
As a JavaScript developer, what non-React tools do you use most often?
Angular
0%
Astro
0%
Svelte
0%
Vue.js
0%
Other
0%
I only use React
0%
I don't use JavaScript
0%
Thanks for your opinion! Subscribe below to get the final results, published exclusively in our TNS Update newsletter:
NEW! Try Stackie AI
From clobbered drafts to real-time sync
Apr 14th 2026 10:00am, by David Moore
TypeScript 6.0 RC arrives as a bridge to a faster future
Mar 14th 2026 9:00am, by Darryl K. Taft
Mastra empowers web devs to build AI agents in TypeScript
Jan 28th 2026 11:00am, by Loraine Lawson
2019-11-18 08:30:57
Snyk Releases a Kubernetes-focused Container Security Platform
news,
CI/CD / Containers / Security / Software Development

Snyk Releases a Kubernetes-focused Container Security Platform

Snyk has launched a new platform for managing dependency vulnerabilities in containers, as well as released a new report highlighting the need for such security technologies.
Nov 18th, 2019 8:30am by Kayla Matthews
👁 Featued image for: Snyk Releases a Kubernetes-focused Container Security Platform

As container adoption rates rise, it becomes more difficult to control or even become aware of the vulnerabilities that get introduced due to the reliance on open source dependencies. With this in mind, cloud native security company Snyk has launched a container- and Kubernetes-focused security platform Snyk Container to find and fix vulnerabilities in third-party application dependencies across the whole software development lifecycle.

Snyk today also released a Helm plugin that allows developers to scan their own Helm charts for vulnerabilities. Their just-released Helm Security Report makes apparent the vulnerabilities in the public Helm Charts repository. Helm is a popular package manager for Kubernetes and can also be used to install third-party software like Jenkins, PostgreSQL and more. Watch The New Stack’s livestream interview with the report’s author Gareth Rushgrove, at 12:15 p.m. Pacific on Nov. 18, 2019 from KubeCon + CloudNativeCon in San Diego.

The company’s recent open-source security report highlights the need for container scanning services, in general. The research suggests that “containers often introduce hundreds of vulnerabilities from open source dependencies, and there is no native safeguard in place to find and fix them,” notes Guy Podjarny, president and co-founder of Snyk, in a statement. “By giving developers the tools they need to both build and run secure containers, including monitoring Kubernetes workloads for vulnerabilities, Snyk Container is helping customers to drastically reduce the risk of growing container infrastructures and scale security best practices.”

The research Podjarny referred to mentioned eye-opening findings, including that there was an 88% increase in application library vulnerabilities in two years and that each of the top ten most popular Docker images contains at least 30 vulnerabilities. The Helm Security Report further finds that 68% of stable Helm charts contain an image with a high severity vulnerability.

Container Products Can Streamline IT Work

One of the reasons why container products have become so popular in a short time is because they target some of the common issues faced by developers. For example, many applications only need to view users and groups but get granted more access than that.

If using a virtual identity server (VIS) or a container, they map and publish application-specific views, giving the application only the data it requires. However, it’s easy to see how many of the conveniences associated with container products could become less apparent if IT professionals continually deal with issues related to container vulnerabilities. Snyk Container aims to make vulnerability management straightforward.

Snyk Container integrates directly with developer workflows and the existing tools an organization uses, such as source control platforms, Kubernetes, CI/CD workflows and container registries. Snyk Container enables regularly performing quick scans to find vulnerabilities related to operating systems or applications. It can also verify secure configurations for Kubernetes workloads.

Developers can also use policies to break builds in certain conditions when needed. When it finds a vulnerability, Snyk Container displays the originating Docker file line. Developers can then prioritize the relevant lines for remediation purposes.

People can also examine the vulnerabilities tree that Snyk Container creates to show direct and indirect dependencies. Having such information provides context about how each vulnerability got introduced.

Then, for each vulnerability identified, Snyk Container provides advice about how to fix it, such as by upgrading to the most secure base image. A related feature that’s coming soon is a pull request for an automated fix. Snyk automates a pull request that changes to the recommended base image, offering quick, seamless results.

👁 Image

Monitoring for New Issues

Besides checking for current vulnerabilities and recommending how to fix them, Snyk Container has a monitoring component that notifies users of new vulnerabilities. Slack and email are the two channels for distributing those alerts, ensuring that IT professionals have up-to-date information and take prompt action.

Snyk has recently been in the headlines for its success in generating capital. The company secured a $7 million Series A round in November 2019. In September 2019, the company announced it had already raised a total of $70 million. It planned then to use the money to expand its business. The introduction of Snyk Container is an example of making that intention a reality.

Snyk Container gives users the insights and resources they need to know where vulnerabilities are and how to address them. These benefits help customers reduce the risks that are often present as container infrastructures grow. Companies can maintain best practices for security as they scale up.

TRENDING STORIES
SHARE THIS STORY
TRENDING STORIES
TNS owner Insight Partners is an investor in: Docker.
SHARE THIS STORY
TRENDING STORIES
TNS DAILY NEWSLETTER Receive a free roundup of the most recent TNS articles in your inbox each day.
The New Stack does not sell your information or share it with unaffiliated third parties. By continuing, you agree to our Terms of Use and Privacy Policy.