Advertisement · 728 × 90

Posts by Minimus

Preview
Implementing CIS Hardening Across Container Pipelines - Minimus Learn how to scale CIS hardening with automation, SBOMs, and minimal images across container environments.

Building a CIS compliant container image isn’t the hard part. Maintaining compliance across container environments as dependencies grow, base images change, and new CVEs emerge is where most teams struggle.

Here's what continuous CIS hardening looks like, and how Minimus helps: buff.ly/BPWXGM1

2 days ago 0 0 0 0
Video

John Morello explains how Minimus works with Merge Ready. Swap your base image, drop your CVE count - it's as simple as that.

Full video: buff.ly/fSH3aW1

2 days ago 0 0 0 0
Video

Open source powers everything, and securing it is a shared responsibility.

Kat Cosgrove talks about why giving back isn’t optional, and how we’re doing our part with free access to Minimus hardened images for eligible projects: buff.ly/FJv0Y2M

Watch the full video: buff.ly/bux07Dt

@kat.lol

3 days ago 3 0 0 0
Preview
Activity Log: Operational Visibility for Hardened Images - Minimus Monitor platform access, token changes, and custom image activity with the Minimus Activity Log. Built-in visibility and auditability for hardened images.

A lot of security gaps come down to lack of visibility. The Minimus Activity Log gives teams a clear audit trail of platform access, token changes, and custom image activity, making it easier to investigate issues, maintain accountability, and stay ahead of risk:

1 week ago 2 0 0 0
Preview
Understanding Container Runtimes - Minimus Learn how container runtimes work, why static vs dynamic binaries matter, and how runtime isolation affects container security and reliability.

We break down container runtimes, static vs. dynamic binaries, and how to avoid runtime failures before they hit production:

1 week ago 0 0 0 0
Preview
Trivy Supply Chain Attack - What You Need To Know - Minimus Trivy v0.69.4 supply chain attack explained. Learn what happened, how to tell if you're impacted, and what steps to take to protect your data.

Are you affected? If you’ve…

❎️ ran trivy v0.69.4–0.69.6
❎️ used trivy-action before 0.35.0
❎️ setup-trivy without pinning

… rotate everything: ssh keys, cloud creds, k8s secrets, .env files.

full breakdown and update here: buff.ly/hHfOsSK

2 weeks ago 1 0 0 0
Preview
Trivy Supply Chain Attack - What You Need To Know - Minimus Trivy v0.69.4 supply chain attack explained. Learn what happened, how to tell if you're impacted, and what steps to take to protect your data.

A lot's happened since trivy v0.69.4 last week:

🗓️ Mar 22: malicious v0.69.5 + v0.69.6 pushed to docker hub
🗓️ Mar 22: teamPCP defaced all 44 repos in aqua's github org
🗓️ Mar 23: Checkmarx KICS GitHub Actions and few OpenVSXPlugins were affected
🗓️ Mar 24: LiteLLM compromised on PyPI

👇

2 weeks ago 1 0 1 0
Advertisement
Post image

Most teams don't know what's actually in their container images. Minimus shows you how many packages are in your image and what vulnerabilities they're carrying.

📦️ public node image = 500+ packages.
📦️ Minimus node = 15.
= 97% package reduction, 100% fewer CVEs.

Full breakdown: buff.ly/sEVwkny

2 weeks ago 2 0 0 0
Post image Post image

One week. Two events. A lot of great conversations. Thanks to everyone who stopped by, said hi, and took a shot at the dart board 🎯

We’ll see you at the next one!

#Minimus #KubeConEU #RSAC

3 weeks ago 1 0 1 0
Post image Post image Post image Post image

📸 Tiny prints, big week.

That's a wrap on KubeCon EU - we had a great time!

If you’re at RSAC, today’s your last chance to come by booth # S-1061. The Mini Cooper is still up for grabs! Stop by to beat our current DART high score 🎯🚗

#RSAC #RSAC2026

3 weeks ago 1 0 0 0
Post image Post image Post image Post image

We actually can be in two places at once…

Can you guess which is our RSAC booth and which is our KubeCon booth?

If you’re at either event, come find us:
📍 RSAC: Booth # S-1061
📍 KubeCon: Booth # 940 + 🎯 Space # 340

#KubeConEU #RSAC #ContainerSecurity #Cybersecurity

3 weeks ago 0 0 0 0
Video

Step 1: Focus 🎯
Step 2: Trust yourself
Step 3: Win a Mini Cooper 🚗

The previous competition winner makes it look easy. Catch us at KubeCon EU booth # 340 + RSAC # S-1061 to take your shot.

#KubeConEU #RSAC #Minimus

3 weeks ago 1 1 0 0
Post image Post image

Minimus has two booths at #KubeCon - Come say hi!

📍 Booth # 940 - Hang out and talk container security and minimal, hardened images.

🎯 Activation Zone # 340 - Play our DART Challenge: Winner takes home a brand new car!

3 weeks ago 1 0 0 0
A photo of a small pink whoopie cushion with the Minimus logo on it in black, resting in my hand.

A photo of a small pink whoopie cushion with the Minimus logo on it in black, resting in my hand.

If you are at Kubecon and think farts are funny, I have a VERY limited number of @minimus.io whoopie cushions available!

3 weeks ago 54 5 3 0
Post image

If you maintain an open source project, we want to support you. We’re excited to launch our Open Source Program, providing access to our secure, minimal images free of charge to eligible projects.

Apply or get more information here: buff.ly/dbV6OQm

#OpenSource #ContainerSecurity @kat.lol

3 weeks ago 15 3 0 0
Post image

Had a great time at Open Source Security Con today! Come see us tomorrow at KubeCon - Booth # 940

4 weeks ago 2 1 0 0
Post image

It’s a big week for Minimus! We won 3 Global InfoSec Awards 🏆
🏅 Market Leader: Container Security
🏅 Market Disruptor: Cybersecurity Startup
🏅 Editor’s Choice: Software Supply Chain Security

We’re grateful for the recognition and for the teams building with us!

4 weeks ago 3 0 0 0
Advertisement
Preview
Trivy Supply Chain Attack - What You Need To Know - Minimus Trivy v0.69.4 supply chain attack explained. Learn what happened, how to tell if you're impacted, and what steps to take to protect your data.

Using Trivy? v0.69.4 was compromised in a supply chain attack. We break down what happened and what to do if you’re affected: buff.ly/3Pr1qjF

4 weeks ago 1 0 0 0
Video

Another event, another Mini Cooper giveaway! That's right - we're bringing the Minimus DART Challenge to KubeCon AND RSAC next week, and someone's leaving with a car!

Come see us at RSAC booth S-1061 / KubeCon booth 940 🎯 🚙

#KubeCon #RSAC #Cybersecurity #ContainerSecurity #CloudSecurity

1 month ago 0 0 0 0
Video

Can't wait for KubeCon EU next week! We're at booth 940 - don't forget to stop by.

1 month ago 0 0 0 0

Happy to have you on the team and support the work you do for the Kubernetes ecosystem! @kat.lol

1 month ago 1 0 1 0

It's not embarrassing to like your own post if you do it from the brand account btw

1 month ago 13 0 1 0
Preview
When Projects Fail: Why Companies Should Treat Open Source as Infrastructure Maintaining an open source project is hard. It requires managing a group of people who are largely...

I'm very lucky that @minimus.io considers the work I do for Kubernetes to be part of my job. That isn't true for most maintainers. Projects are failing or suffering attacks because of a lack of contributors from companies built on top of them, and that's *everyone's* problem.

dev.to/katcosgrove/...

1 month ago 112 20 6 1
Preview
The Cyber Wok - Stirring Up Security Innovation This high-energy event will bring together top CISOs and security leaders from major enterprises for two fast-paced panel conversations on what is driving risk today, what attackers are exploiting…

Heading to RSAC next week? Join us for a panel lunch, The Cyber Wok 🍜, on Tuesday, March 24.

We'll have two panels discussing AI agents, autonomous security, and the risks security leaders are watching next.

Spots are limited, so request your seat soon: buff.ly/LjAgEE6

#RSAC #RSA #RSAC2026

1 month ago 0 0 0 0
Video

With RSAC and KubeCon EU coming up, some people are brushing up on Kubernetes and threat models...

🎯 Others are training for the Minimus Double DART Challenge.

🚙🏆 Get ready for your chance to win a custom Mini Cooper!

#KubeConEU #RSAC #RSA #KubeCon #CloudNativeCon

1 month ago 0 0 0 0
Advertisement
Preview
Tulips & Taps: Welkom to Kubecon Happy Hour · Luma Kick off KubeCon + CloudNativeCon EU in true Amsterdam style. Join Edera, Antithesis, Dash0, groundcover, Minimus, and The New Stack at the iconic Heineken…

🍻 Heading to KubeCon Europe?

Join us Monday, March 23rd at Tulips & Taps, a happy hour at the iconic Heineken Brewery. Get some drinks, bites, and a chance to connect with the cloud native community before the week kicks off.

Register here: buff.ly/SsMDlHg

#KubeCon #CloudNativeCon #Kubernetes

1 month ago 1 0 0 0
Post image

We did it at KubeCon NA - Now we’re bringing it back!

Get ready for the Minimus Double DART Challenge at RSAC and KubeCon EU 2026!

The highest individual score across both events wins a custom Mini Cooper 🚙

So the question is simple: Will RSA or KubeCon have better aim?

#KubeConEU #RSAC

1 month ago 1 0 0 0
Preview
Secure the Mic: RSAC After-Hours Karaoke Party Join a curated group of security leaders, practitioners, and partners for an invite-only karaoke night during RSAC. This is a relaxed, high-energy evening designed for genuine connection, great…

🎤 Looking for something fun to add to your #RSAC schedule?

Join us for Secure the Mic, an invite-only karaoke night. No pitches (just vocal ones). No presentations (except your best power ballad). Just good music and good company:

buff.ly/XKSy4lJ

1 month ago 0 0 0 0
Preview
Fast Go CVE Remediation - Minimus Go CVEs are inevitable. Slow remediation isn’t. Minimus' minimal, source-built images reduce risk and fix critical vulnerabilities in hours.

CVEs are inevitable. Slow remediation doesn’t have to be. In this post, we show how Minimus detected a Go vulnerability (CVE-2025-22872), updated the vulnerable module, rebuilt the package, and published a new image, all in under 12 hours:

1 month ago 0 0 0 0
Preview
2026 Trust Awards finalists announced ahead of RSA Conference Winners will be revealed at the RSA Conference 2026 in San Francisco on March 24.

🏆 Big news heading into RSAC! Minimus is proud to be named a finalist for Best Application Security Solution in the 2026 SC Trust Awards: buff.ly/9wZhEdc

Looking forward to seeing everyone at RSAC Conference when the winners are announced!

#SCAwards2026 #RSAC2026

1 month ago 1 0 0 0