radar
radar copied to clipboard
Add AMI Report
If devsecops maintained a database/file of public AMI's that have known vulnerabilities/exploits then you could alert a user when they were trying to use in scanned CFN Template. Another Idea would be publishing list of public AMI's devsec ops maintains that are known to be kept up to date with security patches and warning if your not using an approved AMI.