Search results for: security


Cloud Native Live: Introducing Kubescape – open-source tool to test Kubernetes deployment

Posted on November 9, 2021

Kubescape is the first open-source tool to test if Kubernetes is deployed according to security frameworks like NSA & CISA Hardening guidelines. in this session, we will show to work with kubescape, what frameworks it supports,…


Kubernetes main attack vectors tree: an explainer guide

Posted on November 8, 2021 | Andrew Zola

Guest post originally published on Magalix’s blog by Andrew Zola Kubernetes is a leader in container orchestration. According to Statista, as much as 46% of respondents in a recent survey stated that they used Kubernetes for automating…


Key takeaways from KubeCon: deeper focus on FinOps, GitOps

Posted on November 5, 2021 | Carlotte Dunlap

Guest post originally published on the GlobalData blog by Charlotte Dunlap, Principal Analyst, Cloud and DevOps Services, GlobalData Technology Summary Bullets: The Open Source Security Foundation (OpenSSF), a new group focused on software security supply chain…


Emissary-ingress now officially supported by top service mesh projects Linkerd and Istio

Posted on November 4, 2021

Project guest post by the Emissary-ingress project maintainers Cloud Native Computing Foundation (CNCF) incubating project Emissary-ingress, an open source ingress controller and API gateway for Kubernetes, announces official support by major service mesh communities Linkerd (a…


Liveblog: KubeCon + CloudNativeCon North America 2021

Posted on November 3, 2021 | Amanda Mitchell

Guest post originally published on Chronosphere‘s blog by Amanda Mitchell, Senior Content Marketing Manager at Chronosphere Hello sunny LA and happy KubeCon + CloudNativeCon North America 2021-eve! Team Chronosphere has set up shop on the KubeCon…


Cloud Native Live: SLSA with Cosign and Kyverno to secure software delivery

Posted on November 2, 2021

Software supply chain attacks have increased 650% in 2021! The Supply chain Levels for Software Artifacts (SLSA, pronounced “salsa”) framework for security and integrity of software artifacts through a supply chain provides detailed guidelines on securing…


Defining a modern app

Posted on November 2, 2021 | Libby Meren

Guest post originally published on NGINX’s blog by Libby Meren, Principal Technical Program Manager at F5 Developers, architects, and DevOps engineers are no longer satisfied with the status quo when it comes to designing and building…


Production Identity Day: SPIFFE + SPIRE North America 2021

Posted on November 1, 2021

We are excited to host the second Production Identity Day at KubeCon + CloudNativeCon North America to share learnings around the latest developments in the space, exhibit demonstrations, and discuss real-world use cases with others who…


16 CNCF interns graduated from Google Summer of Code (GSoC) 2021!

Posted on November 1, 2021

In its fifth year participating in Google Summer of Code (GSoC), CNCF is excited to announce 16 interns have graduated from the program after working with the Foundation’s projects. Interns this year contributed to Graduated, Incubating…


How to justify infrastructure replacement to your manager

Posted on October 29, 2021 | Mark Trent

Guest post originally published on Snapt’s blog by Mark Trent Upgrading an organization’s tech infrastructure can be a tricky affair. On the one hand, there are technical people who are eager to work with upgraded technology,…