Delivering on the Promise of Application Security in the Cloud

Application security has become a complex, distributed problem.  During the days of waterfall development and monolithic applications, application security was pretty straight forward – statically scan your source code, dynamically test your business … Continue reading Delivering on the Promise of Application Security in the Cloud

How Cloud Defenders Thwart Attacks Against Resilient Services

The introduction of containers and micro-service architectures have changed the way we develop, deploy, and run our applications.  Not only has this changed application development, but it’s also created some visibility challenges for application secu… Continue reading How Cloud Defenders Thwart Attacks Against Resilient Services

The Kubernetes Network Security Effect

I’m a firm believer that network security must be a layer in an overall security strategy. As cloud evolves, it’s hard not to notice the network security challenges in this domain. TL;DR: Kubernetes (K8s) has a built-in object (sort of) fo… Continue reading The Kubernetes Network Security Effect

How to Improve Your Cloud and Container Security

Cloud architecture is the organization of components and capabilities that are necessary in order to leverage the power of cloud resources. Following the recent mass migration to the cloud, organizations are embracing best practices for architecting a… Continue reading How to Improve Your Cloud and Container Security

Unlock a New Level of Security at Secure Coding Virtual Summit

A lot of cyberattacks can be prevented by developers who have the right security tools and training. The challenge is that most do not have a full understanding of security best practices. At Secure Coding Virtual Summit, industry-leading AppSec and D… Continue reading Unlock a New Level of Security at Secure Coding Virtual Summit

Aqua Security Details Docker Hub, Bitbucket Cryptojacking Attack

The Team Nautilus security researchers at Aqua Security have reported the discovery of cryptomining activity that involved 92 malicious Docker Hub registries and 92 Bitbucket repositories, all set up over the course of four days. The attacks were disc… Continue reading Aqua Security Details Docker Hub, Bitbucket Cryptojacking Attack

How to Defend Linux from Attacks

Although Linux is still a fraction of the market share of Microsoft Windows and Mac OS X, its growth continues to accelerate.  Linux will continue to grow at compounded annual growth rate (CAGR) of 19.2% through 2027.  Some of the primary factors for … Continue reading How to Defend Linux from Attacks

Reading the Application Security Tea Leaves – How to Interpret the Analyst Reports

There are a number of industry analyst reports on application security.  Each analyst firm and report takes its own slice of the market to analyze and report on vendors within that market.  For example, the Forrester Wave focuses on Static Application… Continue reading Reading the Application Security Tea Leaves – How to Interpret the Analyst Reports

Rapid7 acquires Kubernetes security startup Alcide for $50M

Rapid7, the Boston-based security operations company, has been making moves into the cloud recently and this morning it announced that it has acquired Kubernetes security startup Alcide for $50 million. As the world shifts to cloud native using Kubernetes to manage containerized workloads, it’s tricky ensuring that the containers are configured correctly to keep them […] Continue reading Rapid7 acquires Kubernetes security startup Alcide for $50M

RedHat is acquiring container security company StackRox

RedHat today announced that it’s acquiring container security startup StackRox . The companies did not share the purchase price. RedHat, which is perhaps best known for its enterprise Linux products has been making the shift to the cloud in recent years. IBM purchased the company in 2018 for a hefty $34 billion and has been […] Continue reading RedHat is acquiring container security company StackRox