logo

Aqua Security Blog

ID: d38238bc-d753-5f81-9c0f-6f31a22d7d70

STIX ID: identity--d38238bc-d753-5f81-9c0f-6f31a22d7d70

Feed Type: skeleton

Earliest post: 2015-11-10

Latest post: 2026-02-26

The Aqua Security Blog shares expert insights, research, and practical guidance on cloud-native security, container and Kubernetes protection, and DevSecOps to help teams secure modern infrastructure.

01/01/2020
06/04/2026
Title Date Published Describes IncidentAuthorVisible
Known Techniques, Unknown Speed: How AI Changes the Attack Chain2026-05-07TrueTrue
Unveiling the Mythos Behind Runtime Security2026-04-13TrueTrue
Update: Ongoing Investigation and Additional Activity2026-03-23TrueTrue
Trivy Supply Chain Attack: What Happened and What You Need to Know2026-03-21TrueTrue
Critical CVE in React Server Components Actively Exploited2025-12-09TrueTrue
How to Set Up Runtime Protection Against Malware Like Kaiji2025-11-18TrueTrue
How to Set Up Runtime Defense Against Threats Like Gafgyt2025-10-09TrueTrue
Investigate and Respond to Sobolan Malware with Aqua2025-09-10TrueTrue
NPM Supply Chain: A Critical Threat to Cloud-Native2025-09-09TrueTrue
How to Detect and Block AI-Assisted Malware Like Koske2025-08-12TrueTrue
AI-Generated Malware in Panda Image Hides Persistent Linux Threat2025-07-24TrueTrue
mem Malware with Runtime Security2025-06-11TrueTrue
Shadow Roles: AWS Defaults Can Lead to Service Takeover2025-04-29TrueTrue
How to Secure Your Containers from TeamTNT’s Docker Gatling Gun Campaign2025-04-14TrueTrue
Tomcat in the Crosshairs: New Research Reveals Ongoing Attacks2025-04-02TrueTrue
IngressNightmare Vulnerabilities: All You Need to Know2025-03-26TrueTrue
Supply Chain Security Risk: GitHub Action tj-actions/changed-files Compromised2025-03-15TrueTrue
Stopping Sobolan Malware with Aqua Runtime Protection2025-03-10TrueTrue
Secure Your Containers from Perfctl with Aqua Runtime Protection2025-03-05TrueTrue
Top Cloud Native Threats and Vulnerabilities of 20242025-02-23TrueTrue
Secure Your Containers from DreamBus Botnet with Aqua Runtime Protection2025-02-05TrueTrue
OPA Gatekeeper Bypass Reveals Risks in Kubernetes Policy Engines2025-02-03TrueTrue
300,000+ Prometheus Servers and Exporters Exposed to DoS Attacks2024-12-12TrueTrue
Matrix Unleashes A New Widespread DDoS Campaign2024-11-26TrueTrue
Threat Actors Hijack Misconfigured Servers for Live Sports Streaming2024-11-19TrueTrue
TeamTNT’s Docker Gatling Gun Campaign2024-10-25TrueTrue
AWS CDK Risk: Exploiting a Missing S3 Bucket Allow Takeover2024-10-24TrueTrue
perfctl: A Stealthy Malware Targeting Millions of Linux Servers2024-10-03TrueTrue
CUPS: A Critical 9.9 Linux Vulnerability Reviewed2024-09-27TrueTrue
Sink or Swim: Tackling 2024’s Record-Breaking Vulnerability Wave2024-09-19TrueTrue
Hadooken Malware Targets Weblogic Applications2024-09-12TrueTrue
PG_MEM: A Malware Hidden in the Postgres Processes2024-08-19TrueTrue
Gafgyt Malware Variant Exploits GPU Power and Cloud Native Environments2024-08-14TrueTrue
Bucket Monopoly: Breaching AWS Accounts Through Shadow Resources2024-08-09TrueTrue
TrailShark: Understanding AWS API and Service Interactions2024-08-09TrueTrue
Go deeper: Linux runtime visibility meets Wireshark2024-08-07TrueTrue
Panamorfi: A New Discord DDoS Campaign2024-08-02TrueTrue
Kubernetes Exposed: Exploiting the Kubelet API2024-07-15TrueTrue
Phantom Secrets: Undetected Secrets Expose Major Corporations2024-06-23TrueTrue
Muhstik Malware Targets Message Queuing Services Applications2024-06-04TrueTrue
Linguistic Lumberjack: Understanding CVE-2024-4323 in Fluent Bit2024-05-24TrueTrue
Employee Personal GitHub Repos Expose Internal Azure and Red Hat Secrets2024-05-16TrueTrue
CVE-2024-3094: Newly Discovered Backdoor in XZ tools2024-04-01TrueTrue
Lucifer DDoS botnet Malware is Targeting Apache Big-Data Stack2024-02-21TrueTrue
The Hidden Dangers Within Ubuntu's Package Suggestion System2024-02-14TrueTrue
Mitigating Leaky Vessels Vulnerabilities in runc, BuildKit and Moby2024-02-01TrueTrue
HeadCrab 2.0: Evolving Threat in Redis Malware Landscape2024-01-29TrueTrue
The Truth About npm Deprecated Packages2024-01-18TrueTrue
Apache Applications Targeted by Stealthy Attacker2024-01-08TrueTrue
Lasting Legacy of Log4j: Lessons for Runtime Security2023-12-13TrueTrue

1–50 of 127