Updated
Updated · Computerworld · Jun 8
Minimus Launches 2 Software Security Tools, Extending 98% Container Vulnerability Reduction
Updated
Updated · Computerworld · Jun 8

Minimus Launches 2 Software Security Tools, Extending 98% Container Vulnerability Reduction

2 articles · Updated · Computerworld · Jun 8

Summary

  • Minimus made Minimus Supply Chain Protection and minicli generally available, adding a unified set of tools to manage third-party software risk and container image configuration.
  • Supply Chain Protection works as a pull-through proxy for NPM and PyPI, screening public packages by popularity, commit history and cooling-off periods before they enter CI/CD pipelines.
  • minicli gives developers a macOS and Linux command-line tool to inspect custom image contents, manage private images and convert image recipes into YAML for automation and change control.
  • Together with Minimus Images, which the company says removes up to 98% of standard container base-image vulnerabilities, the launch broadens Minimus from OS package hardening into end-to-end software supply chain security.
  • Founded in 2022 by Twistlock founders and NIST SP 800-190 co-authors, Minimus is backed by a $51 million seed round from YL Ventures and Mayfield.

Insights

How will a $51M startup fend off cloud giants now targeting the same software supply chain security market?
Beyond corporate firewalls, can open-source repositories be redesigned to stop malicious packages at the source?
Can security 'cooling-off' periods for code block urgent patches, creating more risk than they are designed to prevent?