惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

Martin Fowler
Martin Fowler
Y
Y Combinator Blog
M
MIT News - Artificial intelligence
The Cloudflare Blog
WordPress大学
WordPress大学
H
Hackread – Cybersecurity News, Data Breaches, AI and More
博客园 - 司徒正美
小众软件
小众软件
Blog — PlanetScale
Blog — PlanetScale
雷峰网
雷峰网
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报
J
Java Code Geeks
云风的 BLOG
云风的 BLOG
C
Check Point Blog
D
DataBreaches.Net
T
The Blog of Author Tim Ferriss
V
V2EX
F
Fortinet All Blogs
B
Blog
大猫的无限游戏
大猫的无限游戏
N
Netflix TechBlog - Medium
B
Blog RSS Feed
A
About on SuperTechFans
Cyber Security Advisories - MS-ISAC
Cyber Security Advisories - MS-ISAC

Sysdig Blog

Masterclass: AI is more than ChatGPT and LLMs CVE-2026-39987 update: How attackers weaponized marimo to deploy a blockchain botnet via HuggingFace Kubernetes 1.36 - New security features 5 steps to securing AI workloads Marimo OSS Python Notebook RCE: From Disclosure to Exploitation in Under 10 Hours Security briefing: March 2026 The Sysdig MCP server is now available in AWS Marketplace Risk isn’t reduced until you take action: How teams resolve issues in the cloud AI infrastructure security: Why it deserves its own category Three pillars for building effective runtime-powered cloud defense, the right way Closing the cloud security gap with runtime security Seeing risk isn’t stopping it: Why visibility alone isn’t enough TeamPCP expands: Supply chain compromise spreads from Trivy to Checkmarx GitHub Actions AI coding agents are running on your machines — Do you know what they're doing? Runtime security for AI coding agents: Protecting AI-assisted development How runtime insights power every cloud security use case CVE-2026-33017: How attackers compromised Langflow AI pipelines in 20 hours Inline Cloud Response: Accelerating AWS threat containment for SOC teams Runtime malware detection for AWS Fargate Detecting CVE-2026-3288 & CVE-2026-24512: Ingress-nginx configuration injection vulnerabilities for Kubernetes Malware detection with Sysdig Security briefing: February 2026 Leveling up Kubernetes Posture: From baselines to risk-aware admission Eliminating runtime blind spots: How CleanStart and Sysdig build continuous trust across the container lifecycle LLMjacking: From Emerging Threat to Black Market Reality Real risks live at runtime: Why CISOs must care about deep telemetry in 2026 Sysdig named a Leader in the Forrester Wave™: Cloud Native Application Protection Solutions, Q1 2026 How to run rootless containers AI-assisted cloud intrusion achieves admin access in 8 minutes Security briefing: January 2026
A smarter, safer cloud in the age of AI
2025-07-28 · via Sysdig Blog

A brief review of the Sysdig Cloud Defense Report 2025

Security leaders, practitioners, and enthusiasts are looking to keep up with an ever-changing cloud security landscape. So, over the last few weeks, we pored over data from the first half of 2025. Now, we’re sharing what we’ve learned. 

It likely comes as no surprise that much of what was gathered involved artificial intelligence (AI). AI is hard to avoid today, especially with the rate at which organizations are adopting and implementing it. We gathered data on the integration of AI into cloud infrastructure, how AI is being secured, and what both AI-powered threats and threats against AI infrastructure look like. Did you know that AI and innovation are built on open source technologies? Or that the only way to identify modern cloud threats is with runtime visibility?

It’s 2025, and security teams are facing AI-powered transformations on every front. AI is a part of the problem and the solution, and it’s inseparable from the future of cloud security. And now it’s your turn: Take a moment, and dig right into a few of the defining details from the Sysdig Cloud Defense Report 2025. 

AI is both a tool and a target

In the first half of this year we continued to see steady adoption of Sysdig Sage™, the first fully integrated AI cloud security analyst, by organizations that serve a variety of business sectors. It’s a clear sign that AI innovation knows no bounds. On average, using AI for investigations is also helping security teams drive down their mean time to respond by 76%.

The number of AI and machine learning (ML) packages running in workloads also indicates maturing AI adoption, including the discovery and removal of shadow AI. However, misconfigurations — such as an inadvertently publicly exposed AI tool that the Sysdig Threat Research Team (TRT) found in June — are allowing attackers to deploy malware. 

The full report contains recommendations on how to best utilize AI in your security processes and how to properly secure AI used across your organization. 

Runtime is the baseline

When analyzing the threats and vulnerabilities identified so far in 2025, many of them require runtime visibility for detection. Runtime security provides real-time alerting, enabling security teams to stop an attack before the damage is done, and this is no longer optional. Attackers understand our infrastructure, and they move quickly. With the use of AI and automated tools, cloud attacks happen in 10 minutes or less. The report details a few of the most significant threats of 2025 and how to defend against them using the power of runtime and the open source community.  

Open source is the past, present, and future of security

Today’s defenders learned their craft and sharpened their skills through the transparency offered by free and open tools, research, and detections. Luckily for them, open source continues to be an anchor for modern security innovation. 

We’ve continued to see the community’s trust in Falco, the CNCF’s open source runtime threat detection engine, with nearly 10 million new downloads since the beginning of the year. From data sovereignty compliance to real-time detection within CI/CD workflows, open source allows security teams the flexibility they need as they grow to enterprise scale.

And 2025 is still unfolding 

Based on the security trends and the threat landscape we’ve seen so far this year, there are a few things we expect to happen before the end of the year. We believe both industry-specific and CI/CD targeting will persist. We also expect teams to increasingly build developer-friendly prioritization workflows, and that we will see AI evolve from a tool to a partner.

With AI being both on the offensive and defensive ends of attacks, ephemeral infrastructure complicating visibility, and open source everywhere, the right way forward is with a fast, transparent, and collaborative defense. 

Check out the full Sysdig Cloud Defense Report 2025 for all the data, recommendations, and our predictions for the second half of the year and beyond.