makit v0.3.0
- Security catalog in
security/: built-in check severities, detection rules (YAML) and vulnerabilities (OSV JSON),
read from the bundled copy, the newest one from this repository (makit rules update) and--rules DIR.
Findings name their rule (MK-…) and references.makit scan --list-rules/makit rules list. - Vulnerable packages are matched against OSV advisories (npm, including pnpm stores).
makit upgrade [--check]checks GitHub for a newer makit and installs it after asking (self-updatestill works).- Breaking: the apt upgrade command is now
makit system-upgrade(wasmakit upgradein v0.2.0). - Tests: catalog and fixture-filesystem scan tests in Go;
tests/scan-e2e.shreplays a compromise in Docker. --iocs/--list-iocsare replaced by--rules/--list-rules.
curl -fsSL https://raw.githubusercontent.com/material-atomic/makit/v0.3.0/install.sh | bashSource tarball SHA256 (MAKIT_SHA256): 04db0ad8fdf6665c0d17d564592cfa037bc84ff78a2bf6c5139bf5c8d4d0a777
makit-core binaries: see SHA256SUMS (verified by install.sh).