Palo Alto Networks today extended its container and Kubernetes security capabilities to virtual machines (VMs) running in public clouds, among other updates to Prisma Cloud.

Prisma Cloud is Palo Alto Networks’ cloud-native security platform. The first, and perhaps most significant, Prisma Cloud update automatically detects unprotected VMs running in Amazon Web Services (AWS), Microsoft Azure, and Google Cloud Platform (GCP). It then automatically installs the Prisma Cloud Defender agent on the workload.

“Although Prisma Cloud is probably best known for container security, we realize that customers are using a diverse set of form factors for running their cloud-native applications,” said John Morello, VP of product management at Palo Alto Networks. “In fact, customers are utilizing an all-of-the-above approach where they’re using VMs, and Kubernetes, and serverless functions at the same time for different kinds of workloads.”

Today’s update allows customers to use single product to secure VMs, containers, and serverless functions running in public clouds, he added.

A second feature allows customers to extend the MITRE ATT&CK framework across their cloud-native application portfolio via an interactive dashboard. The MITRE ATT&CK framework helps security operations teams assess their defensive strategy and identify areas where they can improve security based on real-world threats and attacks. Prisma Cloud’s new framework, developed by Palo Alto Networks Unit 42 threat research and consulting team, helps organizations evaluate their security posture and also provides incident response and remediation.

Additionally, Prisma Cloud now includes Palo Alto Networks WildFire, its cloud-delivered malware analysis service, to provide malware protection during runtime as well as continuous integration and delivery (CI/CD).

The vendor says the update simplifies compliance for hosts, containers, and serverless applications across frameworks and the Center for Internet Security. And it adds support for scanning code repositories with the twistcli command line interface, as well as support for scanning GitHub Enterprise repositories. New advanced license detection identifies open source licenses in packages and combines with license compliance rules to monitor and manage usage within an organization.

While the latest Prisma Cloud release follows Palo Alto Networks’ Bridgecrew acquisition earlier this year, the update doesn’t include that DevOps startup’s technology, Morello said.

Palo Alto Network bought Bridgecrew for $156 million in February and plans to introduce its developer-focused security capabilities and its open source infrastructure-as-code scanner into Prisma Cloud, but “this release doesn’t specifically include functionality for Bridgecrew,” he said. “The way that we’re going to bring the technology to market is we’re going to utilize some of the features that we have in this release so you can think of the compute part of Prisma Cloud being something that will enable technologies that Bridgecrew has specifically for developers.”