Search results for: security/


TFIR: “Falco is now a graduated CNCF project”

Posted on March 12, 2024

The Cloud Native Computing Foundation (CNCF) recently announced the graduation of Falco, a cloud-native security tool designed for Linux systems and the de facto Kubernetes threat detection engine.


Unlocking ArgoCD: your complete guide to declarative installation and management with the App of Apps approach

Posted on March 7, 2024

Community post originally published on Medium by Maryam Tavakkoli This article outlines my hands-on experience with implementing ArgoCD in our project. Drawing from these experiences, I’ve tried to simplify the process of declarative installation and efficient…


Security Slam 2023

Posted on March 5, 2024

Security Slam 2023 Published: March 6th, 2024 A month-long challenge empowering CNCF community in software security The Cloud Native Computing Foundation (CNCF) once again marked a significant milestone in its commitment to software supply chain security…


Cloud Native Computing Foundation Announces Falco Graduation

Posted on February 29, 2024

The cloud native runtime security tool is used by more than 30 public adopters, including Booz Allen Hamilton, GitLab, Shopify SAN FRANCISCO, Calif. – February 29, 2024 – The Cloud Native Computing Foundation® (CNCF®), which builds…


Cloud strategies and edge computing

Posted on February 28, 2024 | Coredge Marketing

Member post originally published on Coredge’s blog by Coredge Marketing Adopting cloud computing is not always a one-way path as one might think. The cloud does not have all the answers, despite the fact that it is…


Securing services meshes easier with Kyverno

Posted on February 16, 2024

Project post originally published on Kyverno’s blog Service meshes are all too common these days in Kubernetes with some platforms even building them into clusters by default. Service meshes are no doubt useful in a variety…


Policy-as-Code in the software supply chain

Posted on February 14, 2024 | Marina Moore, Michael Lieberman, John Kjell, James Carnegie, and Luca Bandini

TAG post by members of TAG security including Marina Moore, Michael Lieberman, John Kjell, James Carnegie, and Luca Bandini Reviewers: Emily Fox, Andrés Vega, Andrew McNamara, Andrew Block, Jon Zeolla, Andrew Martin Introduction Software supply chain…


Anatomy of a CVE

Posted on February 13, 2024 | Simone Ragonesi and Sara Trappetti

Member post originally published on SighUp’s blog by Simone Ragonesi and Sara Trappetti Introduction In this article, we will conduct an in-depth exploration of an impactful vulnerability affecting various container runtimes. A few days ago, the email inbox…


Oracle OCI credits are now available to CNCF projects: Here is what you need to know

Posted on February 2, 2024 | Jorge Castro and Shah Ahmadzai

By Jorge Castro and Shah Ahmadzai Great news for CNCF projects today! Oracle has donated $3M in Oracle Cloud Infrastructure (OCI) credits for Ampere-ARM based workloads. We are happy to announce that these credits are now…


Top four Kubernetes attack chains and how to break them 

Posted on January 4, 2024 | Oshrat Nir

Member post originally published on ARMO’s blog by Oshrat Nir, Developer Advocate at ARMO While Kubernetes adoption continues to soar, it has become a prime target for cyberattacks. Unfortunately, Kubernetes clusters are complex and can be difficult…