The demo was a bit too fast, I'll have to dig into the code https://github.com/itaysk/kubeconeu23-oci-vuln
#trivy #regctl #oci #kubeconeu #kubecon
🚨🔔Most probably, if you are working with containers, you use some client-side tooling to work with remote container registries. At that point, there are some helper tools that come in handy like #skopeo, #crane, and #regctl 🧰
A great blog by @d2iq_eng🎖
https://eng.d2iq.com/blog/a-tale-of-two-container-image-tools-skopeo-and-crane/