Search results for: security/


Announcing Ratify v1.4.0 – Revocation Checking with CRL Support, Enhanced Out-of-box Experience, and New Cloud Provider Support

Posted on February 12, 2025 | Ratify maintainers

We are thrilled to announce the release of Ratify v1.4.0! This milestone release introduces significant new features that enhance Ratify’s capabilities as a trusted supply chain security tool. As always, we deeply appreciate the contributions from the…


Notary Project announces Notation v1.3.0 and tspclient-go v1.0.0!

Posted on February 10, 2025 | Notary Project Release Team

The Notary Project maintainers are thrilled to announce the latest releases, including notation v1.3.0, notation-go v1.3.0, notation-core-go v1.2.0 and tspclient-go v1.0.0! These new versions are production ready and have successfully completed a comprehensive security audit. Check…


Kubernetes in 2025: are you ready for these top 5 trends and predictions?

Posted on January 22, 2025

Member post originally published on the Fairwinds blog by Andy Suderman Now that Kubernetes has turned 10, it has firmly established itself as a cornerstone of cloud-native deployment. That means it’s finally fair to request ten years…


From PCAP to SCAP: how Falco’s libraries, registries, and plugins enable cloud native insights

Posted on January 22, 2025

Member post by Nigel Douglas, Sysdig In cloud-native systems, understanding the behaviour of complex, distributed web apps requires powerful tools that can dissect system activity down to its core. As the CNCF graduate project Falco demonstrates,…


Fuzzing the CNCF landscape in 2024

Posted on January 13, 2025 | Chris Aniszczyk + Adam Korczynski + David Korczynski

By Chris Aniszczyk (CNCF), Adam Korczynski (Ada Logics), David Korczynski (Ada Logics) CNCF maintains a high level of security for its projects by way of a series of initiatives such as security auditing, supply-chain assessments and…


Managing threat intelligence in Falco

Posted on November 12, 2024 | Nigel Douglas

Falco has become a vital tool for security practitioners seeking to safeguard containerized and cloud-native environments. Leveraging the power of eBPF (Extended Berkeley Packet Filter), Falco monitors system calls and audit events, allowing it to detect…


Announcing Kyverno release 1.13!

Posted on November 7, 2024

Project post originally published on the Kyverno blog Kyverno 1.13 released with Sigstore bundle verification, exceptions for validatingAdmissionPolicies, new assertion trees, generate enhancments, enhanced ValidatingAdmissionPolicy and PolicyException support, and tons more! Wednesday, October 30, 2024 Kyverno…


Why Falco’s new response engine is a game changer for open source cloud native security

Posted on November 6, 2024 | Falco Team and Nigel Douglas

Project post by the Falco Team and Nigel Douglas Falco achieved CNCF Graduation status on February 29, 2024. Following the celebration of this significant milestone at  KubeCon EU in Paris earlier this year, the project has…


Multi-cluster PKI + Istio recipe: practical example for a trusted and scalable PKI for your service mesh

Posted on November 1, 2024 | Cristofer TenEyck and Jimmy Song

 Member post originally published on Tetrate’s blog by Cristofer TenEyck and Jimmy Song Introduction  In the evolving landscape of cloud-native applications, securing service meshes across multiple clusters is crucial for ensuring both security and compliance. Istio,…


Software supply chain compliance and security policies with SignServer, EJBCA, and Chainloop

Posted on October 25, 2024

Member post originally published on the EJBCA by Keyfactor and Chainloop blogs by Ben Dewberry, Product Manager, Signing and Key Management, Keyfactor and Miguel Martinez Trivino, Co-founder, Chainloop A software supply chain is the series of steps…