<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>容器安全 on Text Matrix</title><link>https://txtmix.com/tags/%E5%AE%B9%E5%99%A8%E5%AE%89%E5%85%A8/</link><description>Recent content in 容器安全 on Text Matrix</description><generator>Hugo</generator><language>zh-cn</language><lastBuildDate>Tue, 21 Jul 2026 20:06:14 +0800</lastBuildDate><atom:link href="https://txtmix.com/tags/%E5%AE%B9%E5%99%A8%E5%AE%89%E5%85%A8/index.xml" rel="self" type="application/rss+xml"/><item><title>Trivy 实战指南：Aqua Security 开源的「全能」安全扫描器</title><link>https://txtmix.com/posts/tech/trivy-aquasecurity-security-scanner-guide/</link><pubDate>Thu, 04 Jun 2026 15:00:00 +0800</pubDate><guid>https://txtmix.com/posts/tech/trivy-aquasecurity-security-scanner-guide/</guid><description>&lt;h1 id="trivy-实战指南aqua-security-开源的全能安全扫描器">Trivy 实战指南：Aqua Security 开源的「全能」安全扫描器&lt;/h1>
&lt;h2 id="核心判断">核心判断&lt;/h2>
&lt;p>&lt;code>Trivy&lt;/code>（仓库 &lt;a href="https://github.com/aquasecurity/trivy" target="_blank" rel="noopener noreffer ">aquasecurity/trivy&lt;/a>）不是&amp;quot;又一款&amp;quot;漏洞扫描器，而是把 &lt;strong>CVE 漏洞、SBOM 软件物料清单、IaC 错误配置、敏感密钥、License 风险&lt;/strong> 五类扫描压进同一把 CLI 刀的工具。它能在容器镜像、文件系统、Git 远程仓库、虚拟机镜像、Kubernetes 集群这 5 种目标上做同一种事——告诉你哪儿不安全、为什么、怎么修。&lt;/p></description></item></channel></rss>