I find it hilarious that FluidScan outright fails to work when following instructions from Cloud Application Security Assessment (CASA). Then again this means that the scan result file is empty, and thus you're technically compliant. Right?

Just joking - this is not how it goes, but I just hate when tooling and documentation is left to rot.

https://appdefensealliance.dev/casa/tier-2/ast-guide/static-scan

#realstupidity #borkage

Static Scanning Procedures  |  App Defense Alliance

App Defense Alliance

So I get the RPM and rip it apart... the files it says it's supposed aren't in the RPM at all.

I think packaging might need some work.

#Borkage #Linux #Munin #RPMs