Tetap teratur dengan koleksi
Simpan dan kategorikan konten berdasarkan preferensi Anda.
Security Command Center menawarkan beberapa layanan yang mendeteksi kerentanan dalam penampung, sistem operasi, dan software yang ditemukan di VM, serta aplikasi web. Tempat kerentanan dapat dideteksi bergantung pada layanan cloud
yang Anda gunakan.
Paket software dan kesalahan konfigurasi sistem operasi dalam image Elastic Container
Registry (ECR).
Temuan dari layanan ini memiliki kategori SOFTWARE_VULNERABILITY.
Google Cloud
Penilaian kerentanan Artifact Registry:
Menemukan kerentanan dalam image container yang disimpan di Artifact Registry atau
di-deploy ke salah satu aset berikut:
App Engine
Tugas Cloud Run
Cloud Run
Cluster Google Kubernetes Engine
Temuan dari layanan ini memiliki kategori
CONTAINER_IMAGE_VULNERABILITY.
Dasbor postur keamanan Kubernetes:
Memberikan temuan opini yang dapat ditindaklanjuti tentang potensi masalah keamanan
di cluster Google Kubernetes Engine (GKE).
Temuan dari layanan ini dikeluarkan di class temuan VULNERABILITY dan
MISCONFIGURATION.
VM Manager:
Mengidentifikasi kerentanan dalam sistem operasi yang diinstal di VM,
termasuk Kerentanan dan Eksposur Umum (CVE).
Temuan dari layanan ini memiliki kategori OS_VULNERABILITY.
Penilaian Kerentanan untuk Google Cloud:
Membantu menemukan kerentanan software dengan tingkat keparahan kritis dan tinggi di
instance VM Compute Engine Anda tanpa menginstal agen.
Temuan dari layanan ini memiliki kategori OS_VULNERABILITY dan
SOFTWARE_VULNERABILITY.
Web Security Scanner:
Mengidentifikasi kerentanan keamanan di aplikasi web App Engine, GKE, dan Compute Engine Anda.
[[["Mudah dipahami","easyToUnderstand","thumb-up"],["Memecahkan masalah saya","solvedMyProblem","thumb-up"],["Lainnya","otherUp","thumb-up"]],[["Sulit dipahami","hardToUnderstand","thumb-down"],["Informasi atau kode contoh salah","incorrectInformationOrSampleCode","thumb-down"],["Informasi/contoh yang saya butuhkan tidak ada","missingTheInformationSamplesINeed","thumb-down"],["Masalah terjemahan","translationIssue","thumb-down"],["Lainnya","otherDown","thumb-down"]],["Terakhir diperbarui pada 2025-08-19 UTC."],[],[],null,["# Assess software vulnerabilities overview\n\nSecurity Command Center offers multiple services that detect vulnerabilities in\ncontainers, the operating systems and software found in VMs, and web\napplications. Where vulnerabilities can be detected depends on the cloud service\nyou're using.\n\n\u003cbr /\u003e\n\nAWS\n---\n\n[**Vulnerability Assessment for AWS**](/security-command-center/docs/vulnerability-assessment-aws-overview):\nDetects vulnerabilities in the following AWS resources:\n\n- Software packages installed on [Amazon EC2 instances](https://aws.amazon.com/ec2/).\n- Software packages and operating system misconfigurations in Elastic Container Registry (ECR) images.\n\nThe findings from this service have a category of `SOFTWARE_VULNERABILITY`.\n\nGoogle Cloud\n------------\n\n- [**Artifact Registry vulnerability assessment**](/security-command-center/docs/concepts-security-sources#ar-vuln-assessment):\n Finds vulnerabilities in container images stored in Artifact Registry or\n deployed to one of the following assets:\n\n - App Engine\n - Cloud Run job\n - Cloud Run\n - Google Kubernetes Engine cluster\n\n The findings from this service have a category of\n `CONTAINER_IMAGE_VULNERABILITY`.\n- [**Kubernetes security posture dashboard**](/security-command-center/docs/concepts-security-sources#gke-security-posture-dashboard):\n Provides opinionated, actionable findings about potential security issues\n in your Google Kubernetes Engine (GKE) clusters.\n\n The findings from this service are issued in the `VULNERABILITY` and\n `MISCONFIGURATION` finding classes.\n- [**VM Manager**](/security-command-center/docs/concepts-security-sources#vm_manager):\n Identifies vulnerabilities in operating systems that are installed on VMs,\n including Common Vulnerabilities and Exposures (CVEs).\n\n The findings from this service have a category of `OS_VULNERABILITY`.\n- [**Vulnerability Assessment for Google Cloud**](/security-command-center/docs/vulnerability-assessment-google-cloud):\n Helps to discover critical and high severity software vulnerabilities in\n your Compute Engine VM instances without installing agents.\n\n The findings from this service have categories of `OS_VULNERABILITY` and\n `SOFTWARE_VULNERABILITY`.\n- [**Web Security Scanner**](/security-command-center/docs/concepts-web-security-scanner-overview):\n Identifies security vulnerabilities in your App Engine,\n GKE, and Compute Engine web applications."]]