Cloud security fundamentals part 4: Align and automate with policy as code
A discussion of the fourth of five fundamentals of cloud security: aligning and automating with policy as code. (Part four in a five-part series.)

3862 articles
3862 ARTICLES
A discussion of the fourth of five fundamentals of cloud security: aligning and automating with policy as code. (Part four in a five-part series.)


OpenSSL has released two high severity vulnerabilities — CVE-2022-3602 and CVE-2022-3786 — related to buffer overrun.

If you’ve been looking for an effective way to establish a Ruby on Rails Docker setup for your local development environment, then this post is for you. It’s a continuation of our previous article on how to install Ruby in a macOS for local development.

The increasing popularity of cloud technology has created a growing need for effective cloud security. Instead of simply expanding the size of security teams, organizations can improve their cloud security posture using policy as code.

Discover how Chainguard mitigated OpenSSL vulnerabilities to protect itself and its customers’ software supply chains.

Learn how to easily create a software bill of materials (SBOM) for your Java applications in Maven and Gradle.

Here are the top five AWS misconfigurations you should be aware of to prevent potential security gaps in your infrastructure.

Learn about the top five Docker vulnerabilities or CVEs development teams should watch out for, and how to remediate them.

An upcoming release of OpenSSL, scheduled for November 1, 2022, addresses a critical security vulnerability. This post explains how to detect the vulnerability in your code and describes mitigation steps.

On November 1st, 2022, the OpenSSL Project disclosed High severity vulnerabilities CVE-2022-3786 and CVE-2022-3602, affecting deployments of OpenSSL 3.0.0–3.0.6. Learn how to effectively manage your organization’s patching efforts.

To understand how fuzzing tools improve security, let’s explore the benefits of fuzzing, discuss some use cases for fuzzing, and review an example of how fuzzing would work in a real-world test.

Testing code is the first step to making it secure. One of the best ways to do this is to use unit tests, ensuring that each of the smaller functions within an app behave as they should — especially when the app receives edge-case or invalid inputs, or inputs that are potentially harmful.
Cookies
We use analytics cookies (Google Analytics) to improve this site. Accept to allow them. Privacy Policy