Screenshot of a software interface showing a network map with connected nodes labeled as various systems like microservice_demo and Cartservice. The interface displays details of a node, including service issues and resource usage, against a gradient background.

Identify Threats and Risks in an Istio-based Kubernetes Environment

Denise Ashur October 18, 2023

Identify Threats and Risks in an Istio-based Kubernetes Environment

We are excited to announce a new capability – Istio awareness. 

Istio allows organizations to secure, connect and monitor traffic to your microservices. Starting today, Upwind will identify Istio sidecars and proxies and use this information as context for our threat detection and risk prioritization engine. Upwind can now understand entire network flows, all the way from the endpoint (source) through virtual network devices such as Load Balancers, Istio Proxies and more. 

Understanding what resources do and how they behave helps to secure them and spot threats early, providing pivotal insights for forensic analysis to trace network flows and pinpoint vulnerabilities.

Contents

Further Reading

behind-the-curtain-part-01

What’s Behind the Curtain? AWS Bedrock AgentCore Runtime Tear Down – Part I

Introduction When you deploy an AI agent to AWS Bedrock AgentCore Runtime, your code runs inside a Firecracker microVM - but it doesn't run alone. In this three-part series, we tear down the platform internals, document what we found, and assess how well the isolation holds up. Setting the Stage AWS Bedrock AgentCore Runtime is…
upwind-code

Upwind Code Expands Enterprise Coverage to Azure DevOps and Bitbucket Cloud

Modern development organizations rarely keep all their code in one place. Teams may use different version control platforms because of acquisitions, business-unit preferences, regional requirements, or existing development workflows. But when code is spread across multiple providers, application security coverage can become fragmented too. Today, Upwind Code adds support for Azure DevOps and Bitbucket Cloud.…
Blue-agent

Upwind Blue Agent – Increasing the Scope and tooling to a new level of incident response

Cloud attacks do not stay within the boundaries of a single security tool. An intrusion can begin with an API request, execute a process inside a Kubernetes workload, modify a file, contact an external host, use a cloud identity, and change cluster state, all as part of the same incident. But the evidence needed to…
Add the Upwind RSS Feed to Slack
Connect the Upwind RSS Feed to your Slack.
Follow the how-to here.
Threat RSS
Add the Upwind RSS Feed to Slack
Connect the Upwind RSS Feed to your Slack.
Follow the how-to here.
Main RSS