This company provides secure container images that are continuously patched and include real-time threat intelligence. Their platform automates software bill of materials generation, helping DevOps teams improve security, accelerate compliance, and prioritize vulnerability remediation for containerized applications.
Funding
$51M raised to dateRaised to date based on public sources. This may differ from the amount the company actually raised and is based only on what is publicly available on the internet.


MFFounders
Product
Problem
Traditional container images often contain unnecessary components and outdated patches, leading to a large attack surface and increased vulnerability management overhead for DevOps teams. Identifying and prioritizing remediation efforts for Common Vulnerabilities and Exposures (CVEs) within these images can be time-consuming and complex. This complexity is further amplified when aiming for compliance with standards such as FedRAMP and STIG.
Solution
Minimus provides secure, minimal container and virtual machine images that are continuously patched and incorporate real-time threat intelligence, significantly reducing CVE risk. The platform automates the generation of Software Bills of Materials (SBOMs), providing transparency into the software supply chain. By integrating with threat intelligence feeds, Minimus prioritizes CVEs based on real-world exploitability, enabling teams to focus on the most critical vulnerabilities. The solution offers flexible deployment options, including a SaaS management console and support for air-gapped environments, along with integrations for development, chat, and ticketing tools.
Target Audience
The primary target audience includes DevOps, security, and compliance teams within enterprises and government organizations seeking to reduce CVE risk, accelerate compliance, and streamline vulnerability management for containerized applications.
Features
- Securely built container and VM images with the latest patches and security updates
- Automated generation of Software Bills of Materials (SBOMs) for supply chain visibility
- Real-time threat intelligence integration to prioritize CVE remediation based on exploitability
- Integration with EPSS (Exploit Prediction Scoring System) and CISA KEV (Known Exploited Vulnerabilities)
- Configurable workflows and alerts for image updates and new threat detections
- Flexible deployment options, including SaaS management console and support for air-gapped environments
- Webhooks and API integrations with development, chat, and ticketing tools
- FIPS and STIG compliant images available for sensitive workloads