Containers based on lightweight Linux distributions, such as Alpine Linux, had far fewer vulnerabilities. Researchers: Regularly updating software components can eliminate two-thirds of the vulnerabilities found in container images. Minimizing the volume of code can also reduce the number of vulnerabilities, researchers say. The researchers urge other data scientists to become more proactive about container security in the software. In some cases, removing unnecessary packages had no impact, especially when there were few extraneous packages, the research team says.”]

