# hardened container image

Published articles for hardened container image.

This is one page of public article previews, not the complete archive. Follow Next page to continue. Summaries are not the original full articles.

## Hardened Container Images: Images for a Secure Supply Chain

DevFeed: [Hardened Container Images: Images for a Secure Supply Chain](<https://devfeed.tech/articles/hardened-container-images-images-for-a-secure-supply-chain-13079.md>)

Original publisher: [Read original article](<https://www.chainguard.dev/unchained/hardened-container-images-images-for-a-secure-supply-chain>)

Published: 2024-04-30T00:00:00Z

Content type: article

Language: en

Sources: [Chainguard: Unchained](<https://devfeed.tech/sources/chainguard-unchained.md>)

Topics: [supply-chain-security](<https://devfeed.tech/topics/supply-chain-security.md>), [chainguard images](<https://devfeed.tech/topics/chainguard-images.md>), [Containers](<https://devfeed.tech/topics/containers.md>), [container-security](<https://devfeed.tech/topics/container-security.md>), [Vulnerabilities](<https://devfeed.tech/topics/vulnerabilities.md>), [grype](<https://devfeed.tech/topics/grype.md>), [snyk](<https://devfeed.tech/topics/snyk.md>)

Tags: [canonical](<https://devfeed.tech/tags/canonical.md>), [canonical-chiselled-image](<https://devfeed.tech/tags/canonical-chiselled-image.md>), [chainguard](<https://devfeed.tech/tags/chainguard.md>), [chainguard-images](<https://devfeed.tech/tags/chainguard-images.md>), [container](<https://devfeed.tech/tags/container.md>), [container-image](<https://devfeed.tech/tags/container-image.md>), [container-images](<https://devfeed.tech/tags/container-images.md>), [container-security](<https://devfeed.tech/tags/container-security.md>), [containers](<https://devfeed.tech/tags/containers.md>), [cve](<https://devfeed.tech/tags/cve.md>), [debian](<https://devfeed.tech/tags/debian.md>), [dockerhub](<https://devfeed.tech/tags/dockerhub.md>), [false-positives](<https://devfeed.tech/tags/false-positives.md>), [grype](<https://devfeed.tech/tags/grype.md>), [hardened-container-image](<https://devfeed.tech/tags/hardened-container-image.md>), [iron-bank](<https://devfeed.tech/tags/iron-bank.md>), [redhat](<https://devfeed.tech/tags/redhat.md>), [scanners](<https://devfeed.tech/tags/scanners.md>), [security](<https://devfeed.tech/tags/security.md>), [shift-left](<https://devfeed.tech/tags/shift-left.md>), [snyk](<https://devfeed.tech/tags/snyk.md>), [software-supply-chain](<https://devfeed.tech/tags/software-supply-chain.md>), [supply-chain](<https://devfeed.tech/tags/supply-chain.md>), [vulnerabilities](<https://devfeed.tech/tags/vulnerabilities.md>)

### AI overview

Chainguard introduces its inaugural State of Hardened Container Images report, examining the security of hardened container images from providers including Red Hat, Iron Bank, and Chainguard. The article argues that hardened container images deserve distinct consideration from container vulnerability scanning and describes the report as addressing secure software supply chains.

### Source excerpt

Check out our analysis of the hardened container image landscape, including offerings from Red Hat, Iron Bank, and others.

## A more secure (and smaller) Big Bang

DevFeed: [A more secure (and smaller) Big Bang](<https://devfeed.tech/articles/a-more-secure-and-smaller-big-bang-12859.md>)

Original publisher: [Read original article](<https://www.chainguard.dev/unchained/a-more-secure-and-smaller-big-bang>)

Published: 2024-04-09T00:00:00Z

Content type: article

Language: en

Sources: [Chainguard: Unchained](<https://devfeed.tech/sources/chainguard-unchained.md>)

Topics: [chainguard images](<https://devfeed.tech/topics/chainguard-images.md>), [Security](<https://devfeed.tech/topics/security.md>), [Open Source](<https://devfeed.tech/topics/open-source.md>), [Software](<https://devfeed.tech/topics/software.md>)

Tags: [big-bang](<https://devfeed.tech/tags/big-bang.md>), [certificate-to-field](<https://devfeed.tech/tags/certificate-to-field.md>), [chainguard](<https://devfeed.tech/tags/chainguard.md>), [chainguard-images](<https://devfeed.tech/tags/chainguard-images.md>), [ctf](<https://devfeed.tech/tags/ctf.md>), [cves](<https://devfeed.tech/tags/cves.md>), [distroless](<https://devfeed.tech/tags/distroless.md>), [hardened-container-image](<https://devfeed.tech/tags/hardened-container-image.md>), [iron-bank](<https://devfeed.tech/tags/iron-bank.md>), [open-source](<https://devfeed.tech/tags/open-source.md>), [platform-one](<https://devfeed.tech/tags/platform-one.md>), [releases](<https://devfeed.tech/tags/releases.md>), [united-states-air-force](<https://devfeed.tech/tags/united-states-air-force.md>), [wolfi](<https://devfeed.tech/tags/wolfi.md>)

### AI overview

Chainguard is working with Iron Bank to mirror Chainguard Images for the core Big Bang images, offering a drop-in alternative for Big Bang's secure software factory. The article reports a 100% reduction in CVEs, a 40% reduction in software components, and a 72% reduction in image size, with more than 30 images covering all eight core components.

### Source excerpt

Chainguard enhances Big Bang with secure, smaller images: 100% fewer CVEs, 40% less components, 72% size reduction for fortified security.

## Update for Chainguard Images users on HashiCorp license changes

DevFeed: [Update for Chainguard Images users on HashiCorp license changes](<https://devfeed.tech/articles/update-for-chainguard-images-users-on-hashicorp-license-changes-13308.md>)

Original publisher: [Read original article](<https://www.chainguard.dev/unchained/update-for-chainguard-images-users-on-hashicorp-license-changes>)

Published: 2023-09-01T00:00:00Z

Content type: article

Language: en

Sources: [Chainguard: Unchained](<https://devfeed.tech/sources/chainguard-unchained.md>)

Topics: [chainguard images](<https://devfeed.tech/topics/chainguard-images.md>), [chainguard](<https://devfeed.tech/topics/chainguard.md>), [Security](<https://devfeed.tech/topics/security.md>), [Open Source](<https://devfeed.tech/topics/open-source.md>), [Terraform](<https://devfeed.tech/topics/terraform.md>)

Tags: [chainguard-images](<https://devfeed.tech/tags/chainguard-images.md>), [consul](<https://devfeed.tech/tags/consul.md>), [hardened-container-image](<https://devfeed.tech/tags/hardened-container-image.md>), [hashicorp](<https://devfeed.tech/tags/hashicorp.md>), [open-source](<https://devfeed.tech/tags/open-source.md>), [opentf](<https://devfeed.tech/tags/opentf.md>), [releases](<https://devfeed.tech/tags/releases.md>), [security](<https://devfeed.tech/tags/security.md>), [terraform](<https://devfeed.tech/tags/terraform.md>), [vault](<https://devfeed.tech/tags/vault.md>)

### AI overview

Chainguard explains how HashiCorp's switch from the Mozilla Public License to the Business Source License affects Chainguard Images users. Paying customers receive six additional months of security patches for MPL-licensed HashiCorp tools, while free users retain access to the final MPL-based versions and may receive BUSL-based images through other distribution options.

### Source excerpt

Chainguard's proactive approach to HashiCorp license changes: Secure image solution for hassle-free adaptation.

## Chainguard Image now available for Postgres

DevFeed: [Chainguard Image now available for Postgres](<https://devfeed.tech/articles/chainguard-image-now-available-for-postgres-12949.md>)

Original publisher: [Read original article](<https://www.chainguard.dev/unchained/chainguard-image-now-available-for-postgres>)

Published: 2023-03-06T00:00:00Z

Content type: news

Language: en

Sources: [Chainguard: Unchained](<https://devfeed.tech/sources/chainguard-unchained.md>)

Topics: [chainguard images](<https://devfeed.tech/topics/chainguard-images.md>), [Databases](<https://devfeed.tech/topics/databases.md>), [Containers](<https://devfeed.tech/topics/containers.md>), [Security](<https://devfeed.tech/topics/security.md>), [vulnerability scanning](<https://devfeed.tech/topics/vulnerability-scanning.md>), [Open Source](<https://devfeed.tech/topics/open-source.md>)

Tags: [chainguard](<https://devfeed.tech/tags/chainguard.md>), [chainguard-images](<https://devfeed.tech/tags/chainguard-images.md>), [compiler-hardening](<https://devfeed.tech/tags/compiler-hardening.md>), [container-image](<https://devfeed.tech/tags/container-image.md>), [cosign](<https://devfeed.tech/tags/cosign.md>), [cves](<https://devfeed.tech/tags/cves.md>), [database-hardened-image](<https://devfeed.tech/tags/database-hardened-image.md>), [hardened-container-image](<https://devfeed.tech/tags/hardened-container-image.md>), [memory](<https://devfeed.tech/tags/memory.md>), [memory-safety](<https://devfeed.tech/tags/memory-safety.md>), [open-source](<https://devfeed.tech/tags/open-source.md>), [postgres](<https://devfeed.tech/tags/postgres.md>), [postgres-image](<https://devfeed.tech/tags/postgres-image.md>), [relational-database-image](<https://devfeed.tech/tags/relational-database-image.md>), [sboms](<https://devfeed.tech/tags/sboms.md>), [secure-database-image](<https://devfeed.tech/tags/secure-database-image.md>), [slsa](<https://devfeed.tech/tags/slsa.md>), [sql-database-image](<https://devfeed.tech/tags/sql-database-image.md>), [wolfi](<https://devfeed.tech/tags/wolfi.md>)

### AI overview

Chainguard announces a hardened Postgres container image built on Wolfi. The image runs as a non-root user, is built from source with compiler hardening and memory safety features, is 43MB in size, and aims to reduce known CVEs. It also includes SBOMs and provenance information to support vulnerability scanning and license compliance.

### Source excerpt

Run Postgres, now available as a Chainguard Image, as a hardened container image built on Wolfi. Secure Postgres images by default and reduce their size by 90%.