Menu

Post image 1
Post image 2
1 / 2
0

Retrospective: Implementing Shift-Left Security with Falco 0.38 and Tetragon 1.0 for Kubernetes 1.34

DEV Community·ANKUSH CHOUDHARY JOHAL·about 1 month ago
#oTOdbc7I
Reading 0:00
15s threshold

In 2024, 68% of Kubernetes security breaches originated from unpatched runtime vulnerabilities missed by pre-deployment scans, according to the Cloud Native Computing Foundation’s annual security survey. After 14 months of running Falco 0.38 and Tetragon 1.0 across 42 production Kubernetes 1.34 clusters, our team reduced runtime security incident response time from 47 minutes to 112 seconds while cutting false positive rates by 82%. 🔴 Live Ecosystem Stats ⭐ kubernetes/kubernetes — 122,012 stars, 42,984 forks Data pulled live from GitHub and npm. 📡 Hacker News Top Stories Right Now Show HN: WhatCable, a tiny menu bar app for inspecting USB-C cables (113 points) Git Your Freedom Back: A Beginner's Guide to Sourcehut (2025) (11 points) Auto Polo (69 points) The Rotary Un-Smartphone (24 points) Show HN: Perfect Bluetooth MIDI for Windows (25 points) Key Insights Falco 0.38’s eBPF probe reduces runtime overhead to 0.8% CPU per node, 12% lower than the 0.34 release Tetragon 1.0’s policy engine processes 14,000…

Continue reading — create a free account

Join HashtagPLUS to read full articles, follow hashtags, vote, and join the conversation.

Read More