Hacker News
new
past
comments
ask
show
jobs
points
by
westoque
1 days ago
|
comments
by
bink
1 days ago
|
next
[-]
Ironically, Trivy was the first known compromised package and its purpose is to scan container images to make sure they don't contain vulnerabilities. Kinda like the LLM in your scenario.
reply
by
jimmySixDOF
23 hours ago
|
prev
|
next
[-]
Not sure that Trivy was doing that itself but zizmor is probably better than starting with an LLM :
https://github.com/zizmorcore/zizmor
reply
by
1 days ago
|
prev
|
[-]
deleted
reply