Illustration of a shipping container with the OpenShift logo on a ship, alongside the text Upwind OpenShift Support on a gradient blue background.

Ensure Seamless Hybrid-Cloud Security with Support for OpenShift Container Platform 

Denise Ashur February 27, 2024

Ensure Seamless Hybrid-Cloud Security with Support for OpenShift Container Platform 

We are excited to introduce support for Red Hat OpenShift in the Cloud or On-Premises.

Runtime Security for Red Hat OpenShift 

Red Hat OpenShift Container Platform is a hybrid-cloud PaaS built around Linux containers, orchestrated and managed by Kubernetes with a Red Hat Enterprise Linux foundation.

openshift-map-1-1024x580

With this new capability, you can now seamlessly protect Red Hat OpenShift with Upwind, on AWS, Azure, GCP, Oracle Cloud, or even On-premise (following our existing BYOC support for on-prem data centers and hybrid-cloud environments).

CWPP For Red Hat OpenShift

Upwind’s support for OpenShift unlocks the opportunity to achieve real-time security at runtime for your OpenShift containerized environment. These capabilities include finding misconfigurations, scanning for software and package vulnerabilities, and conducting a deep assessment of your network topology for threat detection, workload process security, malware protection, and anomaly detection.

Contents

Further Reading

You Can't Crowdsource Your Way to a Live Adversary

You Can’t Crowdsource Your Way to a Live Adversary

Bug bounty programs were built on a single assumption: that finding a vulnerability was the hard, scarce, expensive part worth paying for. That assumption held for about a decade, then AI erased it. When anyone can point a model at your code and receive a plausible-looking finding back in seconds, a crowd of finders stops…
arrayref Supply Chain Attack

arrayref Supply Chain Attack: A One-Line Build Dependency Ran a Backdoor During cargo build

Key Takeaways Executive Summary arrayref 0.3.10 is a hijacked release of a widely used Rust utility crate that added one dependency, proc-macro1, whose build script downloaded and executed a remote binary at compile time. The release was live on crates.io for 86 minutes on August 20, 2026, alongside [email protected] and [email protected] published from the same…
Yuval_ArgoCD Research

ArgoCD repoURL XSS: How a Missing Scheme Check Becomes Cluster Takeover 

Executive Summary  This stored cross-site scripting (XSS) vulnerability in ArgoCD [versions <= 3.4.4] allows an attacker who can create or modify an Application to persist a malicious repoURL, which is subsequently executed in an administrator's browser within the Argo CD origin. Because the payload executes in the context of the administrator's authenticated session, and because…
Add the Upwind RSS Feed to Slack
Connect the Upwind RSS Feed to your Slack.
Follow the how-to here.
Threat RSS
Add the Upwind RSS Feed to Slack
Connect the Upwind RSS Feed to your Slack.
Follow the how-to here.
Main RSS