Get a Demo
Under Attack?
A flowchart with interconnected blue circles containing icons. Arrows in green, yellow, and blue link the circles. A small blue circle with a power icon is at the top left. The upwind logo is in the top left corner.

Automatically View High-Privilege Identity Insights in the Upwind Topology Map

<br />
<b>Warning</b>:  Undefined variable $photo in <b>/nas/content/live/landing173/wp-content/themes/bricks/includes/elements/code.php(236) : eval()'d code</b> on line <b>24</b><br />
<br />
<b>Warning</b>:  Trying to access array offset on value of type null in <b>/nas/content/live/landing173/wp-content/themes/bricks/includes/elements/code.php(236) : eval()'d code</b> on line <b>24</b><br />
Denise Ashur March 12, 2025

Automatically View High-Privilege Identity Insights in the Upwind Topology Map

We’re excited to introduce a powerful new capability in the Upwind Cloud Security Platform –  enhancing security by providing seamless visibility into highly privileged identities for every containerized resource in your cloud environment. Now available directly in the Upwind Topology Map, this feature helps detect and mitigate excessive permissions, reducing the risk of privilege escalation attacks and unauthorized access.

Screenshot of a software dashboard showing a map and an overview. The map on the left displays nodes and connections. The overview on the right contains details about Kubernetes deployment and resources, including error messages and resource names.

This enhancement makes it even easier to visualize Upwind’s runtime-driven approach, going beyond traditional CWPP solutions. It correlates real-time network topology, privileged identities, posture misconfigurations, threats, vulnerabilities, and API weaknesses – giving you deeper contextualized security insights to prioritize actual risks.

With this update, you can now easily view high-privilege source information, including:

  • Cloud IAM High-Privilege Roles
  • Kubernetes High-Privilege Roles
  • Kubernetes Security Context
  • Pivot to Cloud – K8s Resources with Cloud Permissions
A network map interface from Upwind shows various nodes and connections, including Kubernetes clusters and AWS resources. A legend details resource states with colored icons, and a sidebar features options like cloud accounts and assets.

This granular identity insight makes it even easier to rapidly assess resource risk context and proactively remediate unnecessary privileges, which ensures stronger protection for your most critical cloud assets. Among other benefits, it helps identify overly permissive Kubernetes service accounts that could allow unintended access to cloud resources, reducing the risk of lateral movement by attackers.

User interface displaying a network map with interconnected nodes and services labeled AWS, Azure, MongoDB, and DNS. A dropdown menu shows filters for resources, with options like AWS and DNS. Various system components and paths are highlighted.

By leveraging Upwind’s correlated container and identity security capabilities, security teams can connect identity risk with vulnerabilities, threats, posture findings, and APIs, achieving holistic protection across containerized environments. To learn how to start correlating identity context with risk findings, schedule a demo today.

Contents

Further Reading

ArgoCD repoURL XSS

ArgoCD repoURL XSS: How a Missing Scheme Check Becomes Cluster Takeover (CVE-2026-62341)

Executive Summary  CVE-2026-62341 is a stored cross-site scripting (XSS) vulnerability in ArgoCD [versions <= 3.4.6] that lets an attacker who can create or modify an Application persist a malicious repoURL, which then executes in an administrator's browser inside the ArgoCD origin. Because the payload rides the admin's authenticated session, and because ArgoCD's controller typically runs…
The Risk Isn't What You Prompt, It's What You Built.

The Risk Isn’t What You Prompt, It’s What You Built

Key Takeaways: Agentic AI security is an architecture problem, not a policy problem. Most organizations have adopted AI agents in the form of coding assistants, autonomous workflow tools, internal chatbots connected to production systems, but without establishing the foundational security frameworks those systems require. The adoption pressure is real. Telling your engineering team to stop…
Upwind is a Visionary Leader in Frost & Sullivan report

Upwind Named a Strong Visionary Leader in Frost & Sullivan’s 2026 Cloud/Application Runtime Security Radar

We're excited to share that Frost & Sullivan has recognized Upwind as a Strong Visionary Leader in the Frost Radar™: Cloud/Application Runtime Security, 2026. This recognition highlights the company's innovation, growth, and leadership in the emerging Cloud-Native Application Detection and Response (CNADR) market. For us, the recognition is meaningful not simply because of where Upwind…
Add the Upwind RSS Feed to Slack
Connect the Upwind RSS Feed to your Slack.
Follow the how-to here.
Threat RSS
Add the Upwind RSS Feed to Slack
Connect the Upwind RSS Feed to your Slack.
Follow the how-to here.
Main RSS