alcide

Alcide Blog

Cloud-native Security Provider

Gadi Naor

Co-founder and CTO of Alcide.io, Gadi is a software security expert who has spent the last several years looking at how methodological savvy and monitoring solutions can be leveraged to streamline cloud operations and break down infrastructure silos to support hermetic network security. These efforts coalesced with the creation of the Alcide cloud security platform.
Find me on:

Recent Posts

New Kubernetes Node Storage-based DoS Vulnerability [CVE-2020-8557]

Jul 16, 2020 10:44:47 AM / by Gadi Naor posted in devsecops, kubernetes, devops, network security, Kubernetes security, Advisor, CVE, vulnerability

0 Comments

 

Vulnerability Description and Impact

Read More

New Kubernetes Node Vulnerability (CVE-2020-8558) bypasses localhost boundary

Jul 9, 2020 2:00:16 PM / by Gadi Naor

0 Comments

Read More

Kubernetes, OPA Gatekeeper, Alcide and Your Cluster Security

Jun 26, 2020 11:59:55 AM / by Gadi Naor posted in Admission Controller, OPA

0 Comments

Policies are a critical foundation to successfully build and operate Kubernetes based applications. Rather than making assumptions on how workloads and applications components should work, we can define policies that will govern and enforce the way those workloads and applications components must work.

Read More

Ingress This!!! API GA In 1.19

Jun 8, 2020 5:46:44 AM / by Gadi Naor posted in kubernetes, ingress, api

0 Comments


Ingress APIs manage external access to the services in a cluster, typically HTTP. This would generally be implemented as an API Gateway style of traffic routers that relay traffic to proxied services through a common entry point. The user would be left to control when and how to publish a service by using a declarative definition of the desired behavior (with YAML/JSON file).

Read More

GitOps Progressive Security for ArgoCD with Alcide Kubernetes Advisor

May 21, 2020 6:29:28 AM / by Gadi Naor posted in kubernetes Advisor, GitOps, ArgoCD

0 Comments


GitOps is a paradigm that puts Git at the heart of building and operating cloud- native applications by using Git as the single source of truth. GitOps empowers developers to perform what used to fall under IT operations. GitOps, as a development pattern, gained a fair share of popularity in recent times as it emphasizes declaratively expressing infrastructure and application configuration within Git repositories GitOps.

Read More

Slack on the Wrist

May 11, 2020 9:29:28 AM / by Gadi Naor posted in Slack, kubernetes Advisor, sKan

0 Comments

 

 

Recent security risks associated with Zoom have become one of the big stories during the coronavirus pandemic. But it turns out not only does Zoom have some code to fix up.

Read More

GitOps - A Security Perspective (Part 1)

Mar 2, 2020 2:13:26 AM / by Gadi Naor posted in Kubernetes security, kubernetes Advisor, GitOps

0 Comments

GitOps is a paradigm that puts Git at the heart of building and operating cloud native applications by using Git as the single source of truth and empowers developers to perform what used to fall under IT operations. This post is part a blog post series covering GitOps and Kubernetes security.

Read More

Helm 3 Released - Bye Bye Tiller (And Why SecOps Should Care)

Nov 14, 2019 12:49:29 PM / by Gadi Naor posted in Kubernetes security, Helm

0 Comments

Helm 3 was released yesterday. Here's what it means for security pros.

Read More

Using Istio to Secure Service Meshes

Mar 20, 2019 10:51:22 AM / by Gadi Naor posted in cloud security, kubernetes, containers, microservices, devops, Istio

0 Comments

 

Read More

Has Olympus Fallen? Cloud Operations & Data Center Vulnerabilities in the Age of Kubernetes

May 9, 2018 10:50:56 AM / by Gadi Naor

0 Comments

Mount Olympus, home of the gods, is under attack. It may not yet have fallen, but in lieu of protective action, its safety is far from guaranteed.

Read More

Subscribe to Email Updates