Assessment of Docker images vulnerability analysis tools: an AHP approach

Authors

DOI:

https://doi.org/10.37779/nt.v25i3.5210

Keywords:

hierarchical analysis; container; security

Abstract

In this study, we evaluated the performance of vulnerability analysis tools for Docker images. We used the Analytic Hierarchy Process (AHP) as a multi-criteria decision-making methodology. Given the growing use of Docker containers and the risks associated with vulnerabilities present in their images, which are available on Docker Hub, this research aims to compare and rank the main tools for identifying these weaknesses. We applied the AHP methodology in two stages: initially, in each study individually and, later, in the results of all the studies. The results indicated that the choice of tool should take into account not only overall effectiveness but also contextual factors and the possibility of using multiple tools for more accurate detection. This work also highlights the need for continuous evaluations, especially regarding dynamic analysis approaches and their comparison with static analysis tools.

Author Biographies

Ali Iddar, CTISM - Universidade Federal de Santa Maria - UFSM

Discente do curso Superior de Tecnologia em Redes de Computadores, CTISM - Universidade Federal de Santa Maria - UFSM.

Rogério C. Turchetti, CTISM - Universidade Federal de Santa Maria - UFSM

Docente do curso Superior de Tecnologia em Redes de Computadores e do Mestrado Acadêmico PPGEPT--CTISM--Universidade Federal de Santa Maria (UFSM). 

Published

2025-01-06

How to Cite

Iddar, A., & Turchetti, R. C. (2025). Assessment of Docker images vulnerability analysis tools: an AHP approach. Disciplinarum Scientia | Naturais E Tecnológicas, 25(3), 53–67. https://doi.org/10.37779/nt.v25i3.5210