Kubernetes Runtime Security with eBPF and Falco
Admission and network policies are not enough. Falco adds runtime detection for suspicious shells, file access, and process activity in Kubernetes.
9 min read/ archive
20 articles covering Kubernetes, DevOps, CI/CD, cloud infrastructure, and security.
Admission and network policies are not enough. Falco adds runtime detection for suspicious shells, file access, and process activity in Kubernetes.
9 min readGitOps needs cluster-side trust checks. Admission control, signed images, and provenance can stop risky manifests before production.
8 min readKubernetes can isolate LLM infrastructure, but prompt injection, retrieval leakage, and tool misuse require application-layer AI security controls.
7 min readProduction debugging should not require permanent cluster-admin. Safer workflows use scoped RBAC, temporary elevation, and audit trails.
7 min readCNCF data shows Kubernetes becoming the operating layer for AI infrastructure. See the impact on MLOps, GitOps, security, and platform teams.
9 min read