Community Security Analytics (CSA) is a set of open-sourced queries and rules designed by Google for self-service security analytics that are designed to help detect common cloud-based threats. Security Operations teams can use CSA to analyze Google Cloud logs to audit recent behavior and help detect threats to workloads. The queries are mapped to the … continue reading
The new Red Hat OpenShift 4.10 release is based on Kubernetes 1.23 with the CRI-O 1.23 runtime and offers new enhancements and features for both developers and administrators. Among the 45 enhancements are the ability to change static network configurations after cluster deployment with enhanced networking metrics and debuggability. OpenShift also provides a way to … continue reading
Google announced the public preview of context-aware threat detections, alert prioritization, and risk scoring on Google Chronicle, which is a solution for threat detection. The new capability aims to help security professionals create efficiencies in customers’ threat detection and response. “An alert in isolation does not provide sufficient information, and associated metadata, context, and asset … continue reading
Google entered into a definitive agreement to acquire threat intelligence provider Mandiant for approximately $5.4 billion. Upon the close of the acquisition, Mandiant will join Google Cloud. Mandiant gathers research from more than 300 intelligence analysts to power its dynamic cyber defense solutions that are delivered through the managed multi-vendor XDR platform, Mandiant Advantage. Together … continue reading
DENT 2.0 is now available with new features that can be utilized by distributed enterprises in retail and remote facilities. The DENT project is an open-source network that uses the Linux Kernel, Switchdev, and other Linux-based projects. DENT was launched in December 2019 under the umbrella of the Linux Foundation with the aim to simplify … continue reading
The potential for cyberattacks has placed many organizations beyond Ukraine on high alert for any threats, and has left them wondering what they can do to bolster their security posture. “Unlike traditional warfare, which generally only has impacts in and around a specific conflict zone, cyberattacks can have far-reaching impacts beyond the initial target that … continue reading
Cloudflare, CrowdStrike, and Ping Identity partnered up to strengthen U.S. cybersecurity in light of increased cyber threats. The new Critical Infrastructure Defense Project will provide free cybersecurity services to vulnerable industries. Eligible organizations will have access to the full suite of Cloudflare Zero Trust solutions, endpoint protection, and intelligence services from CrowdStrike. The project will … continue reading
VMware unveiled new container runtime security capabilities to provide end-to-end security for cloud-native applications. The new capabilities aim to target the security challenges of containerized applications including how to allow only legitimate traffic in and how to enable least-privileged communications between services and defend against the lateral movement of attackers, according to the company. “Protecting … continue reading
The developer security company Snyk recently announced its acquisition of Fugue, a cloud security and compliance company that aims to assist global teams in protecting their cloud environments and help them prioritize innovation. With this, Snyk makes its entrance into the cloud security market, a rapidly growing segment of cybersecurity. Fugue was founded on the … continue reading
ValidKube combines open-source tools to help ensure Kubernetes YAML best practices, hygiene and security. The tool can verify your Kubernetes configuration files through kubeval, remove clutter from your Kubernetes manifests through kubectl-neat, and can scan YAML code for security vulnerabilities with trivy. RELATED CONTENT: Abstracting complexity from Kubernetes breaks down barrier to entry Kubeval uses … continue reading
Cloud-native security company Aqua Security is introducing new features that will help companies address their security risk to its Cloud Native Application Protection Platform (CNAPP). According to Aqua Security, users can choose whether to go with a quick assessment of workload risk, or they can actively protect those workloads from attacks in runtime. They can … continue reading
StarlingX, the platform that builds out infrastructure from the core to the edge by providing a scalable foundation with OpenStack, has reached its R6.0 release. The platform can be used to build out an organization’s central cloud and can be installed on the edge to manage a smaller pool of resources. In addition, the platform … continue reading