Production Docker: Dropping Alpine for Distroless to kill CVEs and bloated layers
If you run a vulnerability scan on your "slim" production images right now, the results might terrify you. I recently audited a fleet of microservices running on standard debian:bullseye-…