<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Secpros Blog</title>
    <link>https://secpros.ml/blog/</link>
    <description>DevOps, Kubernetes, CI/CD security, AI infrastructure, and cloud-native operations articles from Secpros.</description>
    <language>en-us</language>
    <lastBuildDate>Wed, 20 May 2026 00:00:00 GMT</lastBuildDate>
    <atom:link href="https://secpros.ml/feed.xml" rel="self" type="application/rss+xml"/>
    <item>
      <title>Kubernetes Container Image Supply Chain Security</title>
      <link>https://secpros.ml/blog/container-image-security-supply-chain-kubernetes/</link>
      <guid>https://secpros.ml/blog/container-image-security-supply-chain-kubernetes/</guid>
      <description>A practical guide to securing the Kubernetes container image supply chain: scan images for vulnerabilities, sign with Cosign, enforce admission policies with Kyverno, and verify provenance from build to runtime.</description>
      <pubDate>Wed, 20 May 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Kubernetes Secrets Management Beyond Base64</title>
      <link>https://secpros.ml/blog/kubernetes-secrets-management-beyond-base64/</link>
      <guid>https://secpros.ml/blog/kubernetes-secrets-management-beyond-base64/</guid>
      <description>Kubernetes Secrets need encryption, strict RBAC, rotation, and external secret stores before they are safe for production clusters.</description>
      <pubDate>Sun, 17 May 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Kubernetes Runtime Security with eBPF and Falco</title>
      <link>https://secpros.ml/blog/kubernetes-runtime-security-ebpf-falco/</link>
      <guid>https://secpros.ml/blog/kubernetes-runtime-security-ebpf-falco/</guid>
      <description>Admission and network policies are not enough. Falco adds runtime detection for suspicious shells, file access, and process activity in Kubernetes.</description>
      <pubDate>Sun, 10 May 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Kubernetes GitOps with Admission and Provenance</title>
      <link>https://secpros.ml/blog/kubernetes-gitops-admission-provenance/</link>
      <guid>https://secpros.ml/blog/kubernetes-gitops-admission-provenance/</guid>
      <description>GitOps needs cluster-side trust checks. Admission control, signed images, and provenance can stop risky manifests before production.</description>
      <pubDate>Sun, 03 May 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Why Kubernetes Alone Cannot Secure LLM Workloads</title>
      <link>https://secpros.ml/blog/kubernetes-llm-security-gap-cncfs-warning/</link>
      <guid>https://secpros.ml/blog/kubernetes-llm-security-gap-cncfs-warning/</guid>
      <description>Kubernetes can isolate LLM infrastructure, but prompt injection, retrieval leakage, and tool misuse require application-layer AI security controls.</description>
      <pubDate>Sun, 26 Apr 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Secure Kubernetes Production Debugging</title>
      <link>https://secpros.ml/blog/securing-production-debugging-kubernetes/</link>
      <guid>https://secpros.ml/blog/securing-production-debugging-kubernetes/</guid>
      <description>Production debugging should not require permanent cluster-admin. Safer workflows use scoped RBAC, temporary elevation, and audit trails.</description>
      <pubDate>Sun, 19 Apr 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Kubernetes Is the Operating System for AI Infrastructure</title>
      <link>https://secpros.ml/blog/kubernetes-ai-operating-system/</link>
      <guid>https://secpros.ml/blog/kubernetes-ai-operating-system/</guid>
      <description>CNCF data shows Kubernetes becoming the operating layer for AI infrastructure. See the impact on MLOps, GitOps, security, and platform teams.</description>
      <pubDate>Sun, 12 Apr 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>CNCF Kubernetes AI Conformance: What Changed</title>
      <link>https://secpros.ml/blog/cncf-kubernetes-ai-conformance-kubecon-2026/</link>
      <guid>https://secpros.ml/blog/cncf-kubernetes-ai-conformance-kubecon-2026/</guid>
      <description>CNCF Kubernetes AI conformance is moving beyond API compatibility toward practical rules for scheduling, inference, and agentic workloads.</description>
      <pubDate>Sun, 05 Apr 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>Kubernetes as AI Infrastructure Backbone: 2026 Data</title>
      <link>https://secpros.ml/blog/kubernetes-ai-infrastructure-2026/</link>
      <guid>https://secpros.ml/blog/kubernetes-ai-infrastructure-2026/</guid>
      <description>CNCF data shows why Kubernetes is becoming the AI platform layer for GPUs, model serving, GitOps, observability, and storage.</description>
      <pubDate>Fri, 03 Apr 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>AIOps for Kubernetes Monitoring</title>
      <link>https://secpros.ml/blog/aiops-kubernetes-monitoring/</link>
      <guid>https://secpros.ml/blog/aiops-kubernetes-monitoring/</guid>
      <description>Use AIOps with Kubernetes monitoring without black boxes: Prometheus signals, SLO alerts, event correlation, practical incident workflow, and sources.</description>
      <pubDate>Sun, 15 Mar 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>GitHub Copilot for Terraform: Safe IaC Workflow</title>
      <link>https://secpros.ml/blog/github-copilot-terraform/</link>
      <guid>https://secpros.ml/blog/github-copilot-terraform/</guid>
      <description>Use GitHub Copilot to move faster with Terraform without skipping IaC review, validation, policy checks, and security ownership.</description>
      <pubDate>Tue, 10 Mar 2026 00:00:00 GMT</pubDate>
    </item>
    <item>
      <title>LLMs in CI/CD Security</title>
      <link>https://secpros.ml/blog/llms-cicd-security/</link>
      <guid>https://secpros.ml/blog/llms-cicd-security/</guid>
      <description>A practical CI/CD security workflow for AI-assisted code: threat model LLM changes, scan secrets, enforce policy, and verify provenance.</description>
      <pubDate>Thu, 05 Mar 2026 00:00:00 GMT</pubDate>
    </item>
  </channel>
</rss>
