Dapr completes 2023 security audit – increasing enterprise confidence
Project post originally published on the Dapr Blog by Yaron Schneider Dapr is trusted by thousands of developers from companies of all sizes to handle their mission critical workloads. These range from manufacturing to automotive to…
Cloud Native Live: Troubleshooting eBPF Data Plane in Kubernetes cluster for networking and security
eBPF for networking in a Kubernetes cluster brings some advantages such as performance, lower resource utilization, shorter routing path, etc. However, due to the compiler nature of an eBPF program, it is not a trivial task…
Automated security in GitOps pipelines with Weave Policy Engine
Member post originally published on the Weaveworks blog by Twain Taylor Discover the power of Weave Policy Engine for automated security in GitOps pipelines. Strengthen your Kubernetes applications’ security and compliance with policy-as-code enforcement. Learn more….
CNCF On demand webinar: Harness the power of K8s network scanning for improved security posture
Learn how a network scanner with a sequential approach, utilizing multiple OSI layers uncovers the services running on your network. Join the quest and along the way uncover hidden services, detect authentication mechanisms, and identify vulnerabilities
Cloud Native Live: Intro to Tetragon – eBPF-based security observability & runtime enforcement
Cilium’s new Tetragon component enables powerful realtime, eBPF-based Security Observability and Runtime Enforcement.Tetragon detects and is able to react to security-significant events, such asProcess execution eventsSystem call activityI/O activity including network & file accessWhen used in…
Supply chain security framework: S2C2F
Guest post originally published on the SIGHUP blog by Simone Ragonesi In this article, we will introduce you to S2C2F. The Secure Supply Chain Consumption Framework is a combination of requirements and tools for any organization…
Crossplane Completes Security Audit – Hardening and Growing Enterprise Confidence
Project post originally published on the Crossplane blog The Crossplane project has spent the last couple months partnering with Ada Logics, an independent third party security research firm, as well as the CNCF and the OSTIF, to perform a security…
CNCF On demand webinar: Reshape enterprise cloud native security with Harbor and Narrows
Project Narrows provides a unique addition to Harbor as it allows users to assess the security posture of Kubernetes clusters at runtime.
Top Kubernetes security tools in 2023
Member post originally published on the ARMO blog by Ben Hirschberg Kubernetes security is a critical part of the app lifecycle, through the build, deployment and runtime stages. Kubernetes runtime environments are dynamic and continuously changing. As clusters are…