惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

Google DeepMind News
Google DeepMind News
Attack and Defense Labs
Attack and Defense Labs
GbyAI
GbyAI
月光博客
月光博客
Recent Announcements
Recent Announcements
云风的 BLOG
云风的 BLOG
F
Full Disclosure
宝玉的分享
宝玉的分享
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
爱范儿
爱范儿
博客园 - Franky
V
V2EX
Recorded Future
Recorded Future
WordPress大学
WordPress大学
小众软件
小众软件
Webroot Blog
Webroot Blog
雷峰网
雷峰网
Vercel News
Vercel News
N
News and Events Feed by Topic
PCI Perspectives
PCI Perspectives
Cyberwarzone
Cyberwarzone
Threat Intelligence Blog | Flashpoint
Threat Intelligence Blog | Flashpoint
W
WeLiveSecurity
S
Schneier on Security
博客园 - 三生石上(FineUI控件)
K
Kaspersky official blog
F
Fortinet All Blogs
Security Archives - TechRepublic
Security Archives - TechRepublic
Spread Privacy
Spread Privacy
博客园 - 叶小钗
罗磊的独立博客
D
Docker
Forbes - Security
Forbes - Security
让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com
The Register - Security
The Register - Security
A
About on SuperTechFans
B
Blog RSS Feed
I
InfoQ
T
Tailwind CSS Blog
G
Google Developers Blog
H
Help Net Security
V
Vulnerabilities – Threatpost
AWS News Blog
AWS News Blog
N
News and Events Feed by Topic
M
MIT News - Artificial intelligence
K
KPMG report finds enterprise disconnect between AI and its ROI | CIO
P
Proofpoint News Feed
cs.AI updates on arXiv.org
cs.AI updates on arXiv.org
MyScale Blog
MyScale Blog
Latest news
Latest news

Sysdig Blog

Masterclass: AI is more than ChatGPT and LLMs CVE-2026-39987 update: How attackers weaponized marimo to deploy a blockchain botnet via HuggingFace Kubernetes 1.36 - New security features 5 steps to securing AI workloads Marimo OSS Python Notebook RCE: From Disclosure to Exploitation in Under 10 Hours Security briefing: March 2026 The Sysdig MCP server is now available in AWS Marketplace Risk isn’t reduced until you take action: How teams resolve issues in the cloud AI infrastructure security: Why it deserves its own category Three pillars for building effective runtime-powered cloud defense, the right way Closing the cloud security gap with runtime security Seeing risk isn’t stopping it: Why visibility alone isn’t enough TeamPCP expands: Supply chain compromise spreads from Trivy to Checkmarx GitHub Actions AI coding agents are running on your machines — Do you know what they're doing? Runtime security for AI coding agents: Protecting AI-assisted development How runtime insights power every cloud security use case CVE-2026-33017: How attackers compromised Langflow AI pipelines in 20 hours Inline Cloud Response: Accelerating AWS threat containment for SOC teams Runtime malware detection for AWS Fargate Detecting CVE-2026-3288 & CVE-2026-24512: Ingress-nginx configuration injection vulnerabilities for Kubernetes Malware detection with Sysdig Security briefing: February 2026 Leveling up Kubernetes Posture: From baselines to risk-aware admission Eliminating runtime blind spots: How CleanStart and Sysdig build continuous trust across the container lifecycle LLMjacking: From Emerging Threat to Black Market Reality Real risks live at runtime: Why CISOs must care about deep telemetry in 2026 Sysdig named a Leader in the Forrester Wave™: Cloud Native Application Protection Solutions, Q1 2026 How to run rootless containers AI-assisted cloud intrusion achieves admin access in 8 minutes Security briefing: January 2026 Securing GPU-accelerated AI workloads in Oracle Kubernetes Engine Bringing OSS runtime security to AWS: Falco integration with AWS Security Hub CSPM Our customers have spoken: Sysdig rated a Strong Performer in Gartner® Voice of the Customer for Cloud-Native Application Protection Platforms Protecting sensitive business data in preparation for the organization's Gen AI VoidLink threat analysis: Sysdig discovers C2-compiled kernel rootkits AI is still a workload: A practical guide to securing AI workloads How threat actors are using self-hosted GitHub Actions runners as backdoors How Sysdig Sage delivers AI-powered, real-world vulnerability management Security briefing: December 2025 Top 10 ways to get breached in 2026 EtherRAT dissected: How a React2Shell implant delivers 5 payloads through blockchain C2 Introducing runtime file integrity monitoring and response with Sysdig FIM How to detect multi-stage attacks with runtime behavioral analytics EtherRAT: DPRK uses novel Ethereum implant in React2Shell attacks Detecting React2Shell: The maximum-severity RCE vulnerability affecting React Server Components and Next.js The rise of AI agents: How autonomous AI Is transforming cloud security Kubernetes 1.35 - New security features The Urgency of Securing AI Workloads for CISOs Security briefing: November 2025 Quantum and the cloud: Science fiction turned security strategy Cloud security, the right way: What the industry should demand (and why "good enough" isn't) Return of the Shai-Hulud worm affects over 25,000 GitHub repositories Detecting CVE-2024-1086: The decade-old Linux kernel vulnerability that’s being actively exploited in ransomware campaigns What’s old is new again: How to demystify AI security with AIBOMs Securing Kubernetes with agentic cloud security How agentic cloud security reduces real risks Hunting reverse shells: How the Sysdig Threat Research Team builds smarter detection rules Shifting left with AI and MCP: Sysdig + Amazon Q Developer How Falco and Stratoshark close the gap between open source runtime detection and deep forensic analysis Investigating security issues with ChatGPT and the GitHub MCP server New runc vulnerabilities allow container escape: CVE-2025-31133, CVE-2025-52565, CVE-2025-52881 Harden your LLM security with OWASP Security briefing: October 2025 How agentic AI is changing cloud security Kubernetes Incident Response: Detect, investigate, and contain in under 10 minutes Sysdig recognized as a Cloud Security Leader in Latio Tech Cloud Security Market Report AI echolocation of cloud risks using Sysdig & Snyk MCP servers Sysdig MCP Server: Bridging AI and cloud security insights Understanding CVE-2025-49844: “RediShell” Critical Remote Code Execution in Redis How Sysdig secures your containers and Kubernetes Sysdig Security Briefing: September 2025 Cloud security, the right way: The 3 pillars of real-time defense Open source spotlight: Bringing web application security to Falco with Falcoya's Nginx plugin Malicious NPM packages: Are you exposed? AI for SOC teams: 5 cloud security prompts to start your day with Sysdig Sage™ Shai-Hulud: The novel self-replicating worm infecting hundreds of NPM packages ZynorRAT technical analysis: Reverse engineering a novel, Turkish Go-based RAT Modern vulnerability management, built for the cloud Build your AWS incident response playbook with open source tools 2025 Gartner® CNAPP Market Guide: Runtime visibility is no longer optional Threat hunting with Sysdig: Uncovering “IngressNightmare” Open source spotlight: From alerts to action with AI-powered Falco Vanguard From triage to action: How Sysdig’s agentic cloud security platform slashes noise and accelerates remediation The vision comes to life: Agentic cloud security with Sysdig Sage™ Data security findings: A technical deep dive Connecting runtime to source: Sysdig and Semgrep integration Fix what matters, faster: How Sysdig and Semgrep are unifying security without silos – from code to runtime Defending sensitive data with Sysdig Secure Redefining cloud security, the right way A smarter, safer cloud in the age of AI Unifying detection and response: Sysdig + Cortex XSOAR for security at cloud speed The future of security is open, and it needs a unified hub: The Sysdig Open Source Community is here CVE-2025-53104: Command injection via GitHub Actions workflow in gluestack-ui Why MCP server security is critical for AI-driven enterprises What’s new in Sysdig — June 2025 AI-powered CNAPP with Sysdig Sage™ Revolutionizing Cybersecurity Search with Sysdig Sage™ Sysdig Threat Bulletin: Iranian Cyber Threats The end of the prioritization-only era: Vulnerability management needs action Dangerous by default: Insecure GitHub Actions found in MITRE, Splunk, and other open source repositories
Join the movement: The Sysdig Open Source Community is live
2025-07-28 · via Sysdig Blog

When we built tools like Wireshark and Falco, it was because we wanted more than just cool tech — we wanted visibility, control, and the power to protect modern infrastructure out in the open. For us, open source isn’t just a method; it’s a calling, to build the future of security we can all shape together.

We chose open source as a way to participate in shaping the future of technology for and with the community. As these tools have evolved, we’ve seen incredible things happen when communities rally around a unified mission to deliver not only better software, but meaningful collaboration, positive security outcomes, and real opportunities for people to grow in knowledge and their careers. This trajectory is why we are so excited to launch the Sysdig Open Source Community Forum, an open space built for practitioners, contributors, and students who, like us, care deeply about securing the future.

This new Sysdig Open Source Community brings together the projects we’re passionate about,  from our cloud-native runtime security engine Falco, to the high-fidelity syscall and cloud log analyzer Stratoshark, to the forensic capabilities of sysdig OSS. We have seen firsthand how much can be accomplished when users and maintainers collaborate directly, sharing strategies, shaping new features, sharpening documentation, or simply supporting each other. Our goal with this forum is to make that kind of collaboration easier, more accessible, and more impactful for everyone involved.

But this community doesn't just cover software; it’s about lifting the human element too. We are especially proud to include sub-communities that help to lift and sustain the current and future generations of security professionals. Whether it’s finding a new role on the jobs and freelance board, or creating connections that can help folks define their career path in the mentorship and pairing community, or putting the finishing touches on a capstone project with the student portal, the Sysdig Open Source Community is about making an impact today and for the future.

We know the forum will only get us so far, so we also have an events and meetups community to spark real-world connections, and to plan for in-person events. Our hope is that this forum graduates past just talking about code and becomes a place where careers are launched, friendships are built, and innovation thrives.

Meet the moderators

We are not alone in our excitement, and we want to introduce you to some of our co-moderators you’ll be seeing on the forum. Here they are, and what they have to say to introduce themselves:

Leogr — Falco Core Maintainer

I make Falco fly

Maddie — Sysdig Customer Reliability Escalation Engineer 

Focusing on the simple mindset of "Do what works, do what’s right, be kind."

Ekoops — Falco Core Maintainer

Offering the chance to collaborate, learn from peers, and contribute to meaningful open source projects that make a real impact.

MOD_Crystal_Ball — Sysdig Cybersecurity Strategist

Focusing on the simple mindset of "Do what works, do what’s right, be kind."

I'm looking forward to bringing together a community of daily users looking to innovate, learn, and troubleshoot together. I'm also excited to see veteran users teach both newcomers, transitioning to the security field, and students how to use these tools and support them in other aspects of education. I'm a huge advocate of mentorship in cybersecurity and I can't wait to be a member of what's definitely going to be another amazing place to teach, learn, and grow!

Miggisys — Falco Community Moderator

maddigsys, a tech-savvy dad with a corny sense of humor, genuinely loves having fun and isn't shy about exploring the intricacies of tech issues. I enjoy making complicated topics simple and easy to understand. Feel free to reach out anytime to discuss AI and security, particularly on how to make Falco data more operational. By the way, who is a fictional character you admire? For me, I’d say Aizen from Bleach.

Edsoncelio — Customer Solutions Engineer

I love how the community brings people together to solve real-world problems, share knowledge, and build amazing things. I'm excited for what's coming next!

Scott van Kalken, (svk) — Senior Sales Engineer

I’m looking forward to helping embed the culture of open source, with innovation and collaboration, into the next generation of software engineers. I’m also looking forward to learning from everyone… and of course, developing software.

What’s coming up next for the community

Moving past introductions, let's look at what's coming to the community!

Breaking the ice with contests and badges

We are kicking off day one with a spotlight contest. This contest will be an opportunity for individuals and teams to submit what they have contributed to either Falco, sysdig OSS, or Stratoshark. The community will vote on what was the most interesting, impactful, and just plain cool. The winner will be featured in a blog writeup and social post from Sysdig, highlighting their work and its impact on the community. The poll will be open for the first month.

Founders badges will be given out to folks who joined the Sysdig Open Source Community before it was open. So anyone who was registered before 7am EST on July 28th, 2025 will get the exclusive badge.

New content and workshop alert! 

The first week we will be launching a blog highlighting the work of our own Miggysys on integrating AI into Falco. This blog introduces a Falco AI Alert System, an open source, AI-powered platform that enhances raw Falco security alerts with real-time analysis, contextual insights, and automated incident response guidance. Readers will learn how to deploy and configure the system — using OpenAI, Gemini, or Ollama — to transform Falco alerts into actionable intelligence delivered through a live web dashboard and Slack notifications

As a bonus, Miggysys will be rolling up his sleeves to do a workshop later in the month for hands-on experience and an opportunity to provide feedback to make the new tool better! 

Lifting each other through mentorship and pairing

Come join us and our own MOD_Crystal_Ball for an AMA called “Soldier Spy to Security Analyst” where MOD_Crystal_Ball will dive into her career journey from the military into the private sector. This is a great opportunity to get involved and link up for mentorship and pairing. We will also be announcing our second and third badges, specific to folks who have served in the military and also for folks who sign up to mentor and pair. 

Webinars are in the air

Come join Loris Degioanni, Gerald Combs, and Craig McLuckie for their webinar Packets, Pods & Prompts: Why Open Source is the Future of Cloud Security on August 12, 2025, 2:30pm ET | 11:30am PT. Sign up here!

Come and chat with our experts

Sysdig’s CISO in Residence Conor Sherman will be on the Sysdig Open Source Community forum to deliver a livestreaming AMA looking at the path to CISO, plus a special glimpse at a day in the life. If you’re interested in progressing your career towards security leadership, this is a can’t-miss event. 

Capture the flag? 

Join us for a hands-on Capture the Flag (CTF) workshop where you’ll dive into real-world cloud-native security challenges using powerful open source tools like Falco, sysdig OSS, Wireshark, and Stratoshark. Explore container threats, trace suspicious behavior, and analyze network traffic as you hunt down flags across layered environments. Whether you're a beginner or seasoned practitioner, this interactive session will sharpen your detection and investigation skills in a fun, fast-paced setting!

Putting Wireshark and Falco into a particle accelerator to see what happens

Okay, not really… But let’s get ready for a deep dive into Stratoshark analysis in this live demo! During this session, you'll learn how and why to use Stratoshark, plus a few new tricks you can flex to your team.

The doors are open come on in

The launch of the Sysdig Open Source Community marks a new chapter in how we collaborate, learn, and grow together around the tools that are shaping the future of cloud-native security. Whether you're here to contribute code, join a workshop, explore mentorship, or simply connect with like-minded professionals, there’s a place for you in this community. So don’t wait — jump in head first and make your first post. Be part of something that’s more than open source; it's an open opportunity.

Join the community today.