The Orca Security 2020 State of Virtual Appliance Security

To help move the cloud security industry forward and reduce risk for customers, Orca Security conducted a wide-reaching research and testing project to benchmark the current state of virtual appliance security.

Virtual appliances are cheap and easy for software vendors to distribute. Fully preconfigured with all requisite software, they’re often delivered ready for customers to deploy to public and private cloud environments.

Customers assume that software vendors’ virtual appliances are free from security risks such as known vulnerabilities and unsupported operating systems. The reality is a spectrum, from good to bad, with many virtual appliances being distributed with known and fixable security flaws.