Cloud Native Live: Falco’s Nest & the Evolution of Runtime Security
Falco, the Cloud Native Runtime Security project, is constantly evolving to meet the demands of modern cloud environments. This livestream dives into the latest advancements and strategic direction of the project, with a focus on two…
Falco Links Real-Time Detection with Forensic-Level Analysis in the Cloud Native Stack
New integration connects Falco alerts to Stratoshark’s forensic tools, delivering Wireshark-style visibility into system call and audit log data Key Highlights ATLANTA—KUBECON + CLOUDNATIVECON NORTH AMERICA, Nov. 10, 2025 — The Cloud Native Computing Foundation® (CNCF®), which…
Falcoctl: Artifact Management for Falco
Artifact management is the process of storing, organising, and securing the essential components generated throughout software development. Cloudsmith defines artifacts as the tangible outputs of the development lifecycle, including compiled source code, libraries, executables, and configuration…
From PCAP to SCAP: how Falco’s libraries, registries, and plugins enable cloud native insights
Member post by Nigel Douglas, Sysdig In cloud-native systems, understanding the behaviour of complex, distributed web apps requires powerful tools that can dissect system activity down to its core. As the CNCF graduate project Falco demonstrates,…
The New Stack: “How Falco Brought Real-Time Observability to Infrastructure”
In this episode of The New Stack Makers, three maintainers of the Falco project tell how the runtime security project evolved and what’s next.
CNCF On demand webinar: Introduction to Falco Talon
Join us for an introductory webinar on Falco Talon, the latest open-source extension to Falco for automating real-time responses to security threats in cloud-native environments. In this session, we’ll explain what Falco Talon is, the rationale…
Cloud Native Live: Managing threat intelligence in Falco
In this session, we’ll explore how to effectively manage threat intelligence in Falco, the open-source cloud-native runtime security tool. We’ll start with installing Falco on Kubernetes and using Atomic Red Team tests to validate threat detection….
Managing threat intelligence in Falco
Falco has become a vital tool for security practitioners seeking to safeguard containerized and cloud-native environments. Leveraging the power of eBPF (Extended Berkeley Packet Filter), Falco monitors system calls and audit events, allowing it to detect…