Containers
How Container Image Signing Works From Build to Kubernetes Deployment
Container image signing helps DevOps teams verify artifact identity and integrity before deployment, strengthening software supply chain security with signatures, provenance and Kubernetes admission controls ...
Michael Carter | | Artifact Integrity, attestations, CI/CD security, container image signing, container registry, container security, cryptographic signing, deployment policy, DevSecOps, ephemeral runners, image digest, image provenance, keyless signing, Kubernetes admission, Kubernetes security, SBOM, software provenance, software supply chain, supply chain security, trusted delivery
RapidFort Creates Multiple Alliances to Better Secure Cloud-Native Applications
RapidFort, a provider of curated open source container images, has allied with both Wiz and Aqua Security to streamline DevSecOps workflows for organizations building and deploying cloud-native applications. Additionally, RapidFort has inked ...
Microsoft Bakes Linux Container Support Directly into Windows
Linux developers relegated to working on corporate Windows machines no longer have to wrangle with Docker Desktop, file system translations or container lifecycle incompatibilities. This week, Microsoft has released into general availability ...
Karmada Federated Control Plane for Kubernetes Achieves CNCF Graduation
Karmada, the control plane for managing multiple Kubernetes clusters, has graduated from the Cloud Native Computing Foundation’s technology program, offering the CNCF’s stamp-of-approval for production use just in time for the AI ...
Manifestly Safer, Why Kubernetes Wants Developers to Speak KYAML
KYAML gives Kubernetes developers a stricter, more predictable YAML dialect designed to reduce configuration errors, ambiguity, indentation problems and unexpected type coercion ...
Adrian Bridgwater | | CI/CD, cloud native, cloud native security, cloud-native architecture, configuration management, containers, devops, DevSecOps, Helm, KEP 5295, kubectl, kubernetes, Kubernetes configuration, Kubernetes manifests, Kubernetes security, Kubernetes YAML, KYAML, open source, platform engineering, SIG CLI, YAML, YAML errors
Containers Became the Unit of Speed. AI Agents Are Making VMs the Unit of Trust
The container is not disappearing. But as autonomous agents generate code, install packages and invoke tools, cloud-native infrastructure is placing a VM-grade security boundary around it ...
Alan Shimel | | Agent Sandboxing, agent security, agentic AI, AI agents, AI infrastructure, autonomous agents, cloud native security, container security, containers, Docker Sandboxes, Firecracker, gVisor, Kata Containers, kubernetes, MCP security, MicroVMs, platform engineering, RuntimeClass, secure execution, virtualization, workload isolation, zero-trust
Kubernetes v1.37 Enhances Dynamic Resource Allocation
Like many of its fellow projects in the open source community, Kubernetes has seen an increase in pull requests, many of which are no doubt generated by AI. This week’s release of ...
Echo Acquires Hardened Container Assets from Minimus
Echo today revealed it has acquired technology assets from Minimus, a provider of hardened open source container images, that earlier this week revealed it is shutting down. Those assets will later be ...
Docker Hub vs. Private Registries: Security Tradeoffs
In the race to accelerate software delivery, Docker Hub has become a default starting point for developers and organizations alike. It offers convenience, accessibility, and a vast ecosystem of pre-built images that ...
Docker Desktop Gets a Hypervisor of its Own
Docker is bringing full backend parity across all of its Docker Desktop editions, ensuring that macOS, Windows, and (eventually) Linux users get the same performance and polish. The company unveiled a new ...

