PodArmor creates its own packages and distribution from scratch and hence currently requires a fork of Grype which adds a PodArmor provider as described in Vunnel to scan the images. The forks are available at PodArmor Grype and PodArmor Vunnel.
We also create a docker image of the build process for ease of use at Vulnerability Scanner. You can also use the Dockerfile to build your own image.
We’ll now demonstrate how to use this image to scan for vulnerabilities in PodArmor container images.