Blog

Featured
2024 year in review of CNCF and top 30 open source project velocity 
Staff Post 2024 year in review of CNCF and top 30 open source project velocity 
By Chris Aniszczyk  By consistently tracking open source project velocity, we are able to see the trends and technologies resonating with developers and end users. We have been tracking these trends since 2017; all previous blogs...
January 29, 2025
  • Reset

Showing 35 of 2305 posts


From PCAP to SCAP: how Falco’s libraries, registries, and plugins enable cloud native insights
Member Post From PCAP to SCAP: how Falco’s libraries, registries, and plugins enable cloud native insights
Member post by Nigel Douglas, Sysdig In cloud-native systems, understanding the behaviour of complex, distributed web apps requires powerful tools that can dissect system activity down to its core. As the CNCF graduate project Falco demonstrates,...
January 22, 2025

Emerging trends in the cloud native ecosystem
Member Post Emerging trends in the cloud native ecosystem
Member post by Jatinder Singh Purba, Principal, Infosys; Krishnakumar V, Principal, Infosys; Prabhat Kumar, Senior Industry Principal, Infosys; and Shreshta Shyamsundar, Distinguished Technologist, Infosys Emerging Trends in the Cloud-native Ecosystem In the last quarter of 2024,...
November 19, 2024 | Jatinder Singh Purba, Krishnakumar V, Prabhat Kumar, and Shreshta Shyamsundar

Managing threat intelligence in Falco
Community Post Managing threat intelligence in Falco
Falco has become a vital tool for security practitioners seeking to safeguard containerized and cloud-native environments. Leveraging the power of eBPF (Extended Berkeley Packet Filter), Falco monitors system calls and audit events, allowing it to detect...
November 12, 2024 | Nigel Douglas

Why Falco’s new response engine is a game changer for open source cloud native security
Project Post Why Falco’s new response engine is a game changer for open source cloud native security
Project post by the Falco Team and Nigel Douglas Falco achieved CNCF Graduation status on February 29, 2024. Following the celebration of this significant milestone at  KubeCon EU in Paris earlier this year, the project has...
November 6, 2024 | Falco Team and Nigel Douglas

Por qué las Empresas y Desarrolladores Deberían Adoptar Tecnologías como gVisor para Aumentar la Seguridad de sus Contenedores
Community Post Por qué las Empresas y Desarrolladores Deberían Adoptar Tecnologías como gVisor para Aumentar la Seguridad de sus Contenedores
Community post by Gerardo Lopez Falcon En el mundo moderno del desarrollo de software, los contenedores han transformado la forma en que las empresas y los desarrolladores despliegan y administran sus aplicaciones. Sin embargo, con esta...
September 19, 2024 | Gerardo Lopez Falcon

Kubernetes v1.31, Elli: an insider view!
Community Post Kubernetes v1.31, Elli: an insider view!
Community post originally published on Medium by Matteo Bianchi Kubernetes has had a community-driven release lifecycle since forever now and I took part of it as Comms Shadow for v1.31, here’s how it went and what...
August 29, 2024 | Matteo Bianchi

Lessons from CrowdStrike’s buggy update: the critical importance of robust release processes
Lessons from CrowdStrike’s buggy update: the critical importance of robust release processes
Community post by Andrés Vega, M42 and Technical Leader, CNCF TAG Security Recent events involving CrowdStrike’s Falcon security software have underscored a critical lesson across the industry: the importance of having a robust, secure release process....
July 19, 2024

Kubernetes turns 10: triumphs, trials, and the ongoing battle for security
Member Post Kubernetes turns 10: triumphs, trials, and the ongoing battle for security
Member post by Nigel Douglas, Senior Developer Advocate at Sysdig Kubernetes will celebrate its 10th anniversary at the “KuberTENes Birthday Bash” this week.  This milestone is a perfect time to commemorate the platform’s decade-long journey and...
June 4, 2024 | Nigel Douglas

The hidden economy of open source software
Member Post The hidden economy of open source software
Member post originally published on Sysdig’s blog by Nigel Douglas The recent discovery of a backdoor in XZ Utils (CVE-2024-3094), a data compression utility used by a wide array of various open-source, Linux-based computer applications, underscores the importance...
April 26, 2024 | Nigel Douglas

Green Reviews Working Group: Moving towards measuring the sustainability footprint of CNCF projects
Community Post Green Reviews Working Group: Moving towards measuring the sustainability footprint of CNCF projects
Cross-post from the Cloud Native Sustainability blog by Antonio di Turi, Imma Valls, Kristina Devochko, Leonard Pahlke, Niki Manoledaki, Ross Fairbanks In this blog post, we will take a look at how the Green Reviews Working...
March 19, 2024

CNCF Graduated projects have been busy! Here are the latest updates
Staff Post CNCF Graduated projects have been busy! Here are the latest updates
We’re excited to announce a slew of graduated project updates. Read on for some, but not all, of the latest news from the project teams, or get the comprehensive details on the video (which will preview...
March 13, 2024

Anatomy of a CVE
Member Post Anatomy of a CVE
Member post originally published on SighUp’s blog by Simone Ragonesi and Sara Trappetti Introduction In this article, we will conduct an in-depth exploration of an impactful vulnerability affecting various container runtimes. A few days ago, the email inbox...
February 13, 2024 | Simone Ragonesi and Sara Trappetti

Rethinking threat detection and response in cloud native ecosystems
Community Post Rethinking threat detection and response in cloud native ecosystems
Community post originally published on DZone by Nigel Douglas In highly dynamic cloud-native environments, the traditional Threat Detection and Response (TDR) approaches are increasingly showing their limitations. With its unique architecture and operational dynamics, Kubernetes demands re-evaluating how we handle...
February 1, 2024

New year, new skills: kick off 2024 with CNCF
Staff Post New year, new skills: kick off 2024 with CNCF
By Christophe Sauthier, Cloud Native Training and Certification Lead, CNCF A recent CNCF micro-survey focused on training and certification revealed that the vast majority of IT professionals are eager to take new training courses or certifications....
January 18, 2024 | Christophe Sauthier 

New course: detecting cloud runtime threats with Falco
Training & Certification Post New course: detecting cloud runtime threats with Falco
Cloud Native Computing Foundation and Linux Foundation Training and Certification have announced the launch of Detecting Cloud Runtime Threats with Falco (LFS254) to arm IT professionals, security analysts and DevOps engineers with the expertise to fortify...
November 7, 2023

Introduction: what is container runtime security?
Member Post Introduction: what is container runtime security?
Member post by Rob Newsome, Head of Product Management at stack.io Container runtime security represents the proactive measures and controls used to protect a containerized application during its runtime phase. In the contemporary world of DevOps,...
September 8, 2023 | Rob Newsome

CloudNativeSecurityCon 2023: 3 key areas to watch
Staff Post CloudNativeSecurityCon 2023: 3 key areas to watch
If the past couple of years taught us anything, it’s the importance of security in cloud native and open source environments. The fallout of vulnerabilities like Log4j even reached the U.S. Federal Government with the Executive...
January 17, 2023 | Chris Aniszczyk

Getting started with gVisor support in Falco
Project Post Getting started with gVisor support in Falco
Project post originally published on the Falco blog by Luca Guerra, Lorenzo Susini, Vicente J. Jiménez Miras In version 0.32.1, Falco first introduced support for gVisor. So, what is it and how can we use it? gVisor, quoting the official...
September 27, 2022

How to security harden Kubernetes in 2022
Member Post How to security harden Kubernetes in 2022
Guest post originally published on the Elastisys blog by the Elastisys team The NSA/CISA guidelines summarized, with Elastisys hands-on advice and real-world recommendations. Kubernetes is now the most popular container orchestration platform. Practically gone are the Mesoses...
June 7, 2022 | Elastisys team

Cloud native observability and security analytics with SysFlow and Falco
Project Post Cloud native observability and security analytics with SysFlow and Falco
Guest post originally published on Falco’s blog by Frederico Araujo and Teryl Taylor, IBM Research Hello, fellow Falcoers! This blog introduces you to a new open system telemetry format and project called SysFlow. The project has deep...
January 14, 2022 | Frederico Araujo and Teryl Taylor