Cloud Native Security Day: Protecting our cloud native world, one container at a time
Community guest post by Magno Logan Like any technology that uses various interconnected tools and platforms, security plays a vital role in cloud native computing. No wonder that we are having another edition of our Cloud…
Guest post by Michał Różycki, Software Engineer and Kubernetes Advocate at Grape Up With this article, the audience gets to know effective ways to ensure Kubernetes security, using must-have solutions, proven practices, and the best tools…
KubeLinter is an open source tool that analyzes Kubernetes YAML files and Helm charts, checking them against a variety of best practices, with a focus on production readiness and security. In this live stream, we’ll walk…
In this live demo, we will use Ezuri, a memory loader, to penetrate K8s live environments, load a fileless malware, undetected by common security tools, and steal SSL keys. But not to worry, we will also…
The SolarWinds cyber-attack is probably the most sophisticated and damaging nation-state cyber campaign we have seen in recent years. A key factor in the attack was the ability of the attackers to have their code digitally…
CNCF On-Demand Webinar: The Container Security Checklist
Liz’s new Container Security book includes a Security Checklist covering items you should at least think about when considering how to secure your deployments running on containers. In this talk, Liz gives an overview of the…
CNCF On-Demand Webinar: Policy-as-Code to manage security risk in K8s before & after deployment
Modern Kubernetes applications are deployed on a wide range of hosting environments, from multitenant clusters in the cloud to specialized microclusters at the edge. Recent security disclosures, such as those associated with CVE-2020-8554 and CVE-2020-8569, highlight…
TechGenix: “Top Open-Source CNCF Security Projects and Why They Matter – Part 2”
Welcome to part 2 of a two-part series on security for cloud-native applications. In part 1, we highlighted three CNCF security projects — Falco, SPIRE, and Notary, which are CNCF incubating projects. In this article, we…
TechGenix: “Top Open-Source CNCF Security Projects and Why They Matter – Part 1”
Security has long been the biggest challenge for organizations adopting cloud-native technologies like Kubernetes. However, one look at the top CNCF projects shows a lack of security-only ventures. This was especially noticeable in 2019. However, in…
The New Stack: “CNCF Security Whitepaper Shows the Complexity of Securing Cloud Native Operations”
In November, the Cloud Native Computing Foundation released a whitepaper that focused on the security of cloud native applications. It was large in scope, covering everything from cloud native layers, to the full lifecycle of development, to compliance (and everything…