Company
Date Published
Author
Pronoy Chaudhuri
Word count
992
Language
English
Hacker News points
None

Summary

The Datadog Agentless Scanning feature provides visibility into security risks and vulnerabilities within hosts, containers, and serverless functions without requiring agents to be installed on every host. This enables comprehensive monitoring of entire cloud accounts in minutes, including misconfigurations, identity risks, and other capabilities provided by Datadog Cloud Security Management (CSM). The Agentless Scanning is now generally available for AWS cloud environments and offers two deployment options: cross-account scanning or same-account scanning. It works by analyzing hosts and Lambda functions to identify associated packages and running containers, and then checks these against a list of known open-source vulnerabilities. The feature can be used in conjunction with the Datadog Agent to gain additional context through CSM, including suspicious file, process, and network activity signals related to cloud workloads.