Cloud-Native Security

Why You Need a Kubernetes Bill of Materials (KBOM)
You’ve probably heard of software bills of materials (SBOMs). And you may already be familiar with infrastructure bills of materials (IBOM) as well. Both ideas are garnering much attention lately as a ...

Red Hat Adds Interconnect and Cybersecurity Services for Kubernetes
Red Hat today added a Red Hat Service Interconnect to its portfolio that is based on an open source Skupper.io project that enables Layer 7 networking between application components running on different ...

How Kubernetes Adoption Fosters Cloud Resiliency
In the last few years, we’ve seen Kubernetes become businesses’ default container orchestration tool, and it’s easy to understand why. With IT teams’ reliance on containers growing as they increasingly prioritize agile ...

Building Secure Multi-Tenant Container Platforms
Building and securing a multi-tenant container platform requires an advanced multi-tenancy architecture to ensure every aspect can be managed effectively. The platform should perform a wide range of functions, from creating secure, ...

KSOC Publishes SBOM Specification for Kubernetes
Kubernetes Security Operations Center (KSOC) this week published a Kubernetes Bill of Materials (KBOM) specification that promises to make it simpler to discover vulnerabilities. KBOM, available via an open source command line ...

8 Tips for Successful Container Vulnerability Scanning
Container vulnerability scanning is a critical part of container security. It involves inspecting container images and their components to identify potential security issues, weaknesses or vulnerabilities. Containers are lightweight, portable units used ...

Privilege Escalation in Cloud-Native App Production Environments
With today’s modern digital applications, managing access permissions during operational events is crucial to ensuring the safety and security of an organization’s production applications and infrastructure. A common and essential security principle, ...

Achieving Kubernetes Security Posture Management (KSPM)
Kubernetes has emerged as the de facto standard for container orchestration. It introduces powerful management capabilities, but it also presents some formidable security challenges—especially in multi-cloud environments. These include a lack of ...

Securing Container Images Across the CI/CD Pipeline
The Log4j vulnerability was a good reminder that securing cloud-native applications requires ensuring container images are free of critical vulnerabilities. When Log4j went public, security teams struggled to quickly understand which of ...

Day 2 Kubernetes Cost Challenges
Kubernetes provides a powerful container orchestration platform, enabling you to efficiently deploy, scale and manage containerized applications. But like any other technology, Kubernetes comes with its own long-term challenges that could be ...