Skip to content

makit v0.3.0

Choose a tag to compare

@ngvcanh ngvcanh released this 02 Oct 05:43
· 36 commits to main since this release
  • Security catalog in security/: built-in check severities, detection rules (YAML) and vulnerabilities (OSV JSON),
    read from the bundled copy, the newest one from this repository (makit rules update) and --rules DIR.
    Findings name their rule (MK-…) and references. makit scan --list-rules / makit rules list.
  • Vulnerable packages are matched against OSV advisories (npm, including pnpm stores).
  • makit upgrade [--check] checks GitHub for a newer makit and installs it after asking (self-update still works).
  • Breaking: the apt upgrade command is now makit system-upgrade (was makit upgrade in v0.2.0).
  • Tests: catalog and fixture-filesystem scan tests in Go; tests/scan-e2e.sh replays a compromise in Docker.
  • --iocs / --list-iocs are replaced by --rules / --list-rules.
curl -fsSL https://raw.githubusercontent.com/material-atomic/makit/v0.3.0/install.sh | bash

Source tarball SHA256 (MAKIT_SHA256): 04db0ad8fdf6665c0d17d564592cfa037bc84ff78a2bf6c5139bf5c8d4d0a777
makit-core binaries: see SHA256SUMS (verified by install.sh).