MCP is having a moment. @josh.bressers.name wanted to know: what are we actually shipping?
9,000 vulns
263 critical findings
36K+ NPM packages
Outdated base images
Not fear-mongering—just data-driven real... anchore.com/blog/analyzing-the-top-m...
#MCP #ContainerSecurity
Docker hardening starts with less privilege.
No root, no extra caps, read-only FS, tighter limits.
medium.datadriveninvestor.com/docker-harde...
#Docker #DevSecOps #ContainerSecurity
What happened to Trivy? In this short video, I shared a high-level overview of the most recent software supply incident that affected the open source vulnerability scanner Trivy.
#infosec #containersecurity
youtube.com/shorts/0W62U...
My JavaPro article on "10 essential Docker commands to hunt the predator" is live!
We cover:
📜 SBOMs & Attestations
🛡️ Hardened Images (DHI)
🚫 VEX Exemptions
🕵️♂️ Zero-Day Defenses
Read the full Asgard mission here 👇
javapro.io/2026/03/1...
#Docker #DevSecOps #Java #ContainerSecurity
Breach & Build — cybersecurity news
🔴 CVE-2026-33897 | CRITICAL (CVSS 9.9) Incus users, beware! A flaw allows root access to host servers. Immediate action is REQUIRED. Read our blog for full details NOW!
#CVE #BreachAndBuild #Incus #RootAccess #ContainerSecurity
breachandbuild.com/cve-2026-33897-cve-2026-...
CRITICAL: lxc incus (<6.23.0) has a template engine flaw (CVE-2026-33897) enabling container escape & root host access. Upgrade now and review access policies! radar.offseq.com/threat/cve-2026-33897-cw... #OffSeq #ContainerSecurity #Linux
CRITICAL: lxc incus (<6.23.0) path traversal (CVE-2026-33945) lets attackers write files as root, risking host takeover. Patch to 6.23.0+ now! radar.offseq.com/threat/cve-2026-33945-cw... #OffSeq #CVE202633945 #ContainerSecurity
We actually can be in two places at once…
Can you guess which is our RSAC booth and which is our KubeCon booth?
If you’re at either event, come find us:
📍 RSAC: Booth # S-1061
📍 KubeCon: Booth # 940 + 🎯 Space # 340
#KubeConEU #RSAC #ContainerSecurity #Cybersecurity
If you maintain an open source project, we want to support you. We’re excited to launch our Open Source Program, providing access to our secure, minimal images free of charge to eligible projects.
Apply or get more information here: buff.ly/dbV6OQm
#OpenSource #ContainerSecurity @kat.lol
Weekly recap highlights critical vulnerabilities like Langflow CVE-2026-33017, supply-chain abuses, AI-powered threats, container security challenges with D4C, and CI/CD risks from Trivy hijacking affecting global cyber defense. #SupplyChain #ContainerSecurity
Another event, another Mini Cooper giveaway! That's right - we're bringing the Minimus DART Challenge to KubeCon AND RSAC next week, and someone's leaving with a car!
Come see us at RSAC booth S-1061 / KubeCon booth 940 🎯 🚙
#KubeCon #RSAC #Cybersecurity #ContainerSecurity #CloudSecurity
We just updated our guide on integrating Anchore into your Azure DevOps pipelines! Learn how to use anchorectl for distributed analysis (local SBOM generation) or centralized analysis via a staging reg... https://anchore.com/blog/anchore-azure-devops/
#DevSecOps #AzureDevOps #ContainerSecurity #SBOM
#Kubernetes #K8s #DevOps #CloudNative #CKS #DevSecOps #ContainerSecurity #KubernetesSecurity #CNCF #OpenSource #LinuxFoundation #TechCommunity
🛡️ NanoClaw y Docker aíslan agentes de IA en sandboxes de MicroVM
¿Te gustan los agentes tipo OpenClaw pero su inseguridad te preocupa? Esta combinación es la solución.
thenewstack.io/nanoclaw-docker-sandboxe...
#MicroVM #AIIsolation #ContainerSecurity #RoxsRoss
OWASP just adopted DockSec to cut through container security noise and sharpen DevSecOps signal. See how this AI-powered analyzer helps teams ship safer software: jpmellojr.blogspot.com/2026/03/owas... #OWASP #DockSec #DevSecOps #ContainerSecurity #AppSec
📢 New Software Supply Chain 101 Short: What is an SBOM?
In this short video I explain what an SBOM is and why it's so relevant today.
youtu.be/GH0fSSqwgnI?...
#softwaresupplychain #containersecurity #appsec #sbom