Search results for: security


Building a cloud native platform from the ground up with Kairos, k0rdent, and bindy

Posted on May 13, 2026 | Erick Bourgeois, Director & Head of Kubernetes Platform Engineering, RBC Capital Markets

As we shared in our earlier post on FluxCD, RBC Capital Markets has been on a deliberate journey to modernize our Kubernetes platform. GitOps with FluxCD gave us a solid deployment foundation. But as our platform grew,…


Swisscom

Posted on May 12, 2026

Challenges The aim was to reduce dependency on vendor-specific implementations, improve scalability, and ensure data sovereignty and regulatory compliance, while competing with public cloud providers. Technical challenges included building a platform capable of handling 600+ clusters…


A decade of governance: Cloud Custodian at 10 and its role in the agentic AI era

Posted on May 12, 2026 | Kapil Thangavelu, Creator of Cloud Custodian, Co-founder & CTO Stacklet

What is Cloud Custodian? It is an open source, stateless policy engine used to manage public cloud environments, Kubernetes and infrastructure as code through a unified DSL. As an incubating project within CNCF, it allows organizations…


How to get engineering time back from Kubernetes upgrades

Posted on May 11, 2026 | Munib Ali, Director of Engineering, SRE Fairwinds

Kubernetes powers your products, but with that power and flexibility comes organizational challenges around managing complexity and maintenance. It can be tough for an organization to keep up with the speed of open source, especially at…


Announcing Kyverno release 1.18!

Posted on May 5, 2026 | Cortney Nickerson, Kyverno Contributor

We’re excited to announce the release of Kyverno 1.18, our first release since graduating within the Cloud Native Computing Foundation. This release builds on Kyverno’s growing role as a Kubernetes-native policy engine, with major investments in…


Securing GitHub Actions CI dependencies: Recipe card

Posted on May 4, 2026 | Marina Moore, Evan Anderson, and Sherine Khoury, CNCF Technical Advisory Group

Recipe GitHub Actions CI dependencies Target audience (the chef) Project maintainers and developers who need practical, concrete steps to efficiently secure CI dependencies within their GitHub Actions workflows Scope (ingredients) Dependencies within the GitHub Actions, Github…


The New Stack: “Fresh data has us asking, does AI demand Kubernetes?”

Posted on May 1, 2026

A new report reveals Kubernetes’ central role in AI adoption, while highlighting how engineering best practices, platform maturity, and guardrails are critical to managing complexity, security, and scale.


AI sandboxing is having its Kubernetes moment

Posted on April 30, 2026 | Jed Salazar, Field CTO, Edera

Recently, Anthropic announced that its new model, Mythos, had autonomously found and exploited zero-day vulnerabilities in every major operating system and web browser – including a 27-year-old bug that had survived decades of human review and…


Adobe

Posted on April 30, 2026

The challenge Flex CI & CD transformed software delivery at Adobe by making GitOps the foundation of how teams deploy and manage applications. We established Git as the source of truth, adopted declarative infrastructure and application…


The state of AI in CNCF projects: A first look at the data

Posted on April 29, 2026 | Graziano Casto, Hélia Barroso, Alessandro Pomponio, Sonali Srivastava - CNCF TAG Developer Experience

At CNCF TAG Developer Experience, we recently set out to understand how Artificial Intelligence is shaping open-source development. The response from the community has been impressive in its scale, with nearly half of our initial responses…