Cloud-Native Security
RapidFort Allies with CrowdStrike to Harden Container Images
RapidFort this week revealed it has integrated its container vulnerability remediation platform with the cloud security platform provided by CrowdStrike. Announced at the Fal.Con 2026 event hosted by CrowdStrike, the integration enables ...
From Controls to Continuous Assurance: Rethinking GRC for Cloud-Native Environments
The standard process of building governance, risk, and compliance (GRC) programs has been straightforward: define a control, document a control, test the control on a regular basis, and generate a report for ...
BellSoft Rings Change Bringing Zero-CVE Images to Buildpacks Users
BellSoft is bolstering Paketo Buildpacks. As an OpenJDK vendor known for providing tested (and commercially supported) Java distributions, Bellsoft is now offering a new hardened builder image for Paketo Buildpacks ...
The Pipeline That Thinks: Building an AI-Powered DevSecOps Pipeline on AWS EKS
The organizations building pipelines that think, review, secure, monitor and recover, are defining what the next baseline looks like ...
Security Flaw in Argo CD Can Let Attackers Take Over Kubernetes Clusters
Argo CD has become a widely popular open source tool for developers who use GitOps for deploying cloud-native applications to Kubernetes. For cyberthreat actors who are already increasingly focusing their attention on ...
The AI Remediation Bottleneck: Why the Software Supply Chain Demands Radical Openness
For years, the DevSecOps movement has operated on a foundational premise that if you detect a vulnerability, you triage it, patch it, and redeploy. This cycle assumes that our capability to remediate ...
Together, Edera and Minimus Claim They Can Protect Your Software From AI Hackers
Hopefully, they can deliver because AI programs like Anthropic’s Mythos AI are cracking open programs faster than an otter can shuck oysters. MINNEAPOLIS — At Open Source Summit North America, Edera, a ...
OWASP Has Adopted DockSec and the Cloud Security Community Is Taking Notice
With more than 13,000 downloads across more than 40 countries, DockSec has earned its place as an OWASP Incubator Project by doing something most container security tools have not managed: closing the ...
How AI Is Transforming Cloud-Native Identity and Access Management
AI is reshaping identity and access management with real-time threat detection, adaptive access control and zero-trust for cloud-native environments ...
Docker Inc. Allies with NanoCo to Deploy General-Purpose AI Agent Safely
Docker Inc. has formed an alliance that makes it simpler to deploy a lightweight NanoClaw artificial intelligence (AI) agent from NanoCo in Docker Sandboxes that ensure any AI agent is only able ...

