Aqua News

Contact Aqua PR

Fighting Over Cloud Workloads for Cryptomining

March 30, 2022

Other attackers have found ways to exploit the free tier of continuous integration, continuous deployment (CI/CD) pipeline services — such as Azure DevOps, BitBucket, CircleCI, GitHub, GitLab, and TravisCI — and string together the transient workloads into a cryptomining cloud service, according to cloud security firm Aqua Security.

Read more

Researchers Find Python-Based Ransomware Targeting Jupyter Notebook Web Apps

March 30, 2022

The new sample was discovered by researchers at Aqua Security, after it was caught in one of its honeypots. The ransomware specifically targets Jupyter Notebooks, an open-source web app used by data professionals to work with data, write and execute code, and visualize the results.

Read more

How Aqua Security is approaching DevSecOps in 2022

March 30, 2022

In this Q&A, Itay Shakury, Aqua Security’s Director of Open Source, discusses cloud trends, Kubernetes security, hiring for InfoSec jobs, and everything in between.

Read more

New study by Aqua Security finds UK firms have limited awareness of cloud native security putting them at risk of serious cyber attacks

March 29, 2022

Around a third of respondents say between half and three quarters of their apps are cloud native, yet 20 percent have no cloud native security strategy in place  Nearly half (44 percent) rely on ‘free’ offerings from their cloud providers  Less than a third of respondents consider cloud misconfiguration to be their biggest cyber security …

Read more

Big tech is fixing bugs faster. Will that influence trickle down?

March 25, 2022

“The tech community is getting faster at fixing discovered security issues for a variety of reasons, including advancing DevOps and CI/CD technological advancements, adopting bug bounty programs into the mainstream, embracing open source platforms’ security issue tracking, and Project Zero making an impact,” said Eylam Milner, director, Argon Technology with Aqua Security.

Read more

LAPSUS$ Cyber Crime Spree Nabs Microsoft, Okta, NVIDIA, Samsung

March 24, 2022

“[The hack] highlights the need for secure development processes, SAST and DAST scans, secret scans, etc. It is also a good reminder that organizations should treat their code as if it were open source, and if their code is exposed, then minimal damage will occur,” according to Yakir Kadkoda, Lead Security Researcher at Aqua Security.

Read more

Aqua Security Releases Library of 200+ Cloud Native Security Icons as Part of Visual Standardization Effort

March 24, 2022

BOSTON — March 24, 2022 — Aqua Security, the leading pure-play cloud native security provider, today announced it has released the industry’s most robust set of cloud native security icons. Available in the Aquasec GitHub repository and The Noun Project, the library of more than 200 free icons is part of an effort to standardize …

Read more

Cybersecurity has 52 unicorns. Here are 10 to watch

March 17, 2022

VentureBeat chose 10 of the current security unicorns to highlight. Criteria is that they’re reporting strong growth; they’re in a fast-growing market; and that the editor had the chance to interview their CEO or president in recent months, giving him a sense of their strategy, differentiators and traction with customers.

Read more