Check Point® Software Technologies Ltd. has been recognized as a Leader in the 2024 Gartner® Magic Quadrant™ for Email Security Platforms (ESP).
Alcide announced the release of sKan, an open and free command line tool that brings Alcide Security Platform to the hands of developers, DevOps and Kubernetes application builders.
sKan enables developers to scan Kubernetes configuration and deployment files as part of their application development as well as CI pipelines. Developers can download the tool here and start scanning their Kubernetes deployment files, Helm charts or Kustomized resources.
Developers today are required to better understand security implications, identify risk and implement application hardening as part of their day-to-day practice. Alcide sKan, powered by technology behind Alcide Advisor and Open Policy Agent (OPA), is a software translation of DevSecOps culture and shifting security left to the hands of developers building Kubernetes-based applications. Alcide sKan complements Kubernetes application builders’ choice of deployment framework tooling, whether this is via Helm charts, Kustomized resources or plain Kubernetes resource files (Yaml/Json). While scanning source code for security vulnerabilities is a common practice, possible configuration errors in Kubernetes environments is often overlooked and vulnerabilities are often unwittingly introduced to production.
Alcide sKan helps filling the Kubernetes security skills gap engineering teams often experienced by putting in developers' and DevOps' hands a tool that provides immediate feedback on security issues, risk, hardening and best practices, of Kubernetes deliverables, before even committing to a single line of code or deploying.
“What we keep hearing from our customers and prospects is that they want to bring the K8s security insights to developers early on,” says Gadi Naor, Alcide’s CTO and co-founder. “How can we bring the insights from Alcide Kubernets Advisor to the hands of developers that build applications running on Kubernetes in the most automated and seamless manner? This is why we created sKan, to serve as a checkpoint tool for developers that is available in their comfort zone without interrupting their development workflow.”
Each sKan covers a broad range of potential security risks Kubernetes application builders must care about: from verifying that deployment files are not configured to run privileged, nor introduce risks to Kubernetes worker nodes, through RBAC sanitation checks, identifying secret leaks and many more. Alcide sKan presents actionable insights for each detected risk to help improve the security of first-party software built in-house as well as third-party software deployment files or Helm charts.
Industry News
Progress announced its partnership with the American Institute of CPAs (AICPA), the world’s largest member association representing the CPA profession.
Kurrent announced $12 million in funding, its rebrand from Event Store and the official launch of Kurrent Enterprise Edition, now commercially available.
Blitzy announced the launch of the Blitzy Platform, a category-defining agentic platform that accelerates software development for enterprises by autonomously batch building up to 80% of software applications.
Sonata Software launched IntellQA, a Harmoni.AI powered testing automation and acceleration platform designed to transform software delivery for global enterprises.
Sonar signed a definitive agreement to acquire Tidelift, a provider of software supply chain security solutions that help organizations manage the risk of open source software.
Kindo formally launched its channel partner program.
Red Hat announced the latest release of Red Hat Enterprise Linux AI (RHEL AI), Red Hat’s foundation model platform for more seamlessly developing, testing and running generative artificial intelligence (gen AI) models for enterprise applications.
Fastly announced the general availability of Fastly AI Accelerator.
Amazon Web Services (AWS) announced the launch and general availability of Amazon Q Developer plugins for Datadog and Wiz in the AWS Management Console.
vFunction released new capabilities that solve a major microservices headache for development teams – keeping documentation current as systems evolve – and make it simpler to manage and remediate tech debt.
Check Point® Software Technologies Ltd. announced that Infinity XDR/XPR achieved a 100% detection rate in the rigorous 2024 MITRE ATT&CK® Evaluations.
CyberArk announced the launch of FuzzyAI, an open-source framework that helps organizations identify and address AI model vulnerabilities, like guardrail bypassing and harmful output generation, in cloud-hosted and in-house AI models.
Grid Dynamics announced the launch of its developer portal.
LTIMindtree announced a strategic partnership with GitHub.