<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:dc="http://purl.org/dc/elements/1.1/">
  <channel>
    <title>Forem: Harsh Mota </title>
    <description>The latest articles on Forem by Harsh Mota  (@harshmota99).</description>
    <link>https://forem.com/harshmota99</link>
    <image>
      <url>https://media2.dev.to/dynamic/image/width=90,height=90,fit=cover,gravity=auto,format=auto/https:%2F%2Fdev-to-uploads.s3.amazonaws.com%2Fuploads%2Fuser%2Fprofile_image%2F285647%2F278627b1-4387-4968-bfca-41ba74d22636.png</url>
      <title>Forem: Harsh Mota </title>
      <link>https://forem.com/harshmota99</link>
    </image>
    <atom:link rel="self" type="application/rss+xml" href="https://forem.com/feed/harshmota99"/>
    <language>en</language>
    <item>
      <title>DevOps Security Challenges and How JFrog Xray Helps Overcome Them</title>
      <dc:creator>Harsh Mota </dc:creator>
      <pubDate>Fri, 21 Jan 2022 20:13:40 +0000</pubDate>
      <link>https://forem.com/harshmota99/devops-security-challenges-and-how-jfrog-xray-helps-overcome-them-16af</link>
      <guid>https://forem.com/harshmota99/devops-security-challenges-and-how-jfrog-xray-helps-overcome-them-16af</guid>
      <description>&lt;p&gt;&lt;a href="https://res.cloudinary.com/practicaldev/image/fetch/s--bJl19f6n--/c_limit%2Cf_auto%2Cfl_progressive%2Cq_auto%2Cw_880/https://dev-to-uploads.s3.amazonaws.com/uploads/articles/1hiplor6v57dvjvxn4jx.png" class="article-body-image-wrapper"&gt;&lt;img src="https://res.cloudinary.com/practicaldev/image/fetch/s--bJl19f6n--/c_limit%2Cf_auto%2Cfl_progressive%2Cq_auto%2Cw_880/https://dev-to-uploads.s3.amazonaws.com/uploads/articles/1hiplor6v57dvjvxn4jx.png" alt="Image description" width="661" height="400"&gt;&lt;/a&gt;&lt;/p&gt;

&lt;p&gt;Reactive approach to application security and information security has been the trend for a very long time. Most of companies tend to still take reactive approach to application security. And when security becomes a problem, it becomes a crisis. But why wait for an attacker to get into your unprotected or minimally protected sensitive data before you decide to do something about it? &lt;/p&gt;

&lt;p&gt;If you wait until it’s too late, all attention will focus on remediation efforts and damage control as you attempt to hold onto what little trust still remains within your customer base. Proactive security approach is the name of the game. &lt;/p&gt;

&lt;p&gt;JFrog Xray Solves all the above problems. JFrog Xray is an application security tool that integrates security directly into your DevOps workflows, enabling you to deliver trusted software releases faster. JFrog Xray fortifies your software supply chain and spans your entire pipeline from your IDE, through your CI/CD Tools, and all the way through distribution to deployment.&lt;/p&gt;

&lt;p&gt;JFrog Xray's key capabilities are;&lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;&lt;p&gt;Automated Zero-Day &amp;amp; Malicious Code Detection by fully automated binary analysis capability and detection of previously unknown vulnerabilities in your code.&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;Eliminate Configuration Security Threats by providing tool featuring software configuration security analysis&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;Software Composition Analysis which helps detect vulnerabilities in your 3rd party OSS binaries and reduce your risk and fortify your brand as a trusted vendor&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;Deep Recursive Scanning Supporting all major package types&lt;br&gt;
helping see into all layers and dependencies of packages, container images, and zip files&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;Contextual Remediation which reduces vulnerability noise with smart prioritization by security analysis done at the binary level for more relevance&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;Visibility and Impact Analysis via component graph of your binaries and dependencies helping determine true impact of any vulnerability or issue discovered&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;Automate Compliance with Granular Policies to implement security &amp;amp; legal guidelines by setting mitigation behaviours to match the issue context&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;Accelerated Remediation to Minimize time to identify, prioritize and fix vulnerabilities along with enhanced CVE data with intuitive Step-by-Step Mitigation advice&lt;/p&gt;&lt;/li&gt;
&lt;li&gt;&lt;p&gt;DevOps Ecosystem Integration &amp;amp; Automation helping Integrate into existing DevOps tools: IDEs, Git repository, CI/CD, observability &amp;amp; SIEMs. Automate with REST APIs or the JFrog CLI tool&lt;/p&gt;&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;The security conversation is often intimidating. But it doesn’t have to be. There are ways to overcome these application security challenges. Talk to one of our JFrog Xray experts here at JFrog &lt;a href="https://jfrog.com/start-free/"&gt;https://jfrog.com/start-free/&lt;/a&gt;. &lt;/p&gt;

&lt;p&gt;Read more about JFrog Xray:&lt;/p&gt;

&lt;p&gt;&lt;a href="https://jfrog.com/security-and-compliance/"&gt;https://jfrog.com/security-and-compliance/&lt;/a&gt;&lt;br&gt;
&lt;a href="https://www.jfrog.com/confluence/display/XRAY"&gt;https://www.jfrog.com/confluence/display/XRAY&lt;/a&gt;&lt;/p&gt;

</description>
    </item>
    <item>
      <title>What are Container registries and why are they increasingly becoming popular?</title>
      <dc:creator>Harsh Mota </dc:creator>
      <pubDate>Thu, 05 Dec 2019 03:36:00 +0000</pubDate>
      <link>https://forem.com/jfrog/what-are-container-registries-and-why-are-they-increasingly-becoming-popular-5bn1</link>
      <guid>https://forem.com/jfrog/what-are-container-registries-and-why-are-they-increasingly-becoming-popular-5bn1</guid>
      <description>&lt;p&gt;Containers have taken the enterprise by storm and their advantages are wide spread. Managing these container images is becoming difficult; as more &amp;amp; more container technologies like Docker, Kubernetes, vagrant e.t.c are becoming popular &amp;amp; widely used. Modern DevOps teams are required to manage all types of binaries at scale, with most modern microservices-based architectures being developed using Docker, Kubernetes and other popular containers. These DevOps teams working with container technologies need a robust &amp;amp; flexible registry solution for container image management.&lt;/p&gt;

&lt;p&gt;JFrog, creators of Artifactory and the Universal DevOps technology leader known for enabling liquid software via continuous update flows, announced the launch of JFrog Container Registry — powered by JFrog Artifactory — as the most comprehensive and advanced container registry available in the market to manage Docker, Kubernetes helm and generic container images.&lt;/p&gt;

&lt;p&gt;This new hybrid container solution provides the registry and management tools for container images that are scalable and reliable, all while ensuring container images are protected from security vulnerabilities. It produces the world’s richest metadata through an Artifactory core, providing rich storage capabilities and fully-hybrid capabilities for maximum flexibility.&lt;/p&gt;

&lt;p&gt;JFrog Container Registry also includes the ability to easily integrate with the other tools you use, either through REST APIs or the JFrog CLI, so your CI/CD platform can readily push completed builds to your registries.&lt;/p&gt;

&lt;p&gt;JFrog Container Registry features:&lt;/p&gt;

&lt;ul&gt;
&lt;li&gt;A robust Docker container registry&lt;/li&gt;
&lt;li&gt;Hybrid model: on-premise or via SaaS multi-cloud&lt;/li&gt;
&lt;li&gt;Advanced automation through REST, CLI, YAML, and more&lt;/li&gt;
&lt;li&gt;Full support for Helm&lt;/li&gt;
&lt;li&gt;Free support for local, virtual and remote repositories, including generics&lt;/li&gt;
&lt;li&gt;Secure registry technology, powered by JFrog Xray&lt;/li&gt;
&lt;/ul&gt;

&lt;p&gt;JFrog Container Registry offers below unmatched benefits:&lt;br&gt;
&lt;a href="https://thepracticaldev.s3.amazonaws.com/i/t1grdy9jv0dcqmxoueni.png"&gt;https://thepracticaldev.s3.amazonaws.com/i/t1grdy9jv0dcqmxoueni.png&lt;/a&gt;&lt;/p&gt;

&lt;p&gt;And best of all JFrog Container Registry is offered free!!&lt;/p&gt;

&lt;p&gt;How to get started?&lt;/p&gt;

&lt;p&gt;You can host the JFrog Container Registry as an On-Prem (Freemium) version on your own infrastructure or use the SaaS version. Both versions of JFrog Container Registry share an almost identical set of features, look and feel and functionality but provide you with the flexibility you need when it comes to meeting your organization’s hosting and infrastructure requirements.&lt;/p&gt;

&lt;p&gt;The JFrog Container Registry is available for free at jfrog.com/container-registry.&lt;/p&gt;

</description>
    </item>
  </channel>
</rss>
