---
title: Cloud native applications security (5)
description: "The cloud native security blog: container security, Kubernetes Security, Docker Security, DevOps Tools, DevSecOps, image scanning, Continuous integration, Runtime protection and more. (5)"
---

[Aqua Security](https://www.aquasec.com)

- [Products](https://www.aquasec.com/products/aqua-cloud-native-security-platform/)
- [Solutions](https://www.aquasec.com/solutions/kubernetes-container-security/)
- [Resources](https://www.aquasec.com/resources/)
- [Company](https://www.aquasec.com/about-us/)

Search [Sign In](https://cloud.aquasec.com/signin) [Try Aqua](https://www.aquasec.com/demo/)

Aqua Blog

Expert insight, best practices and advice on cloud native security, trends, threat intelligence and compliance

[![Phantom Secrets: Undetected Secrets Expose Major Corporations](https://blog.aquasec.com/hs-fs/hubfs/Phantom-secrets-blog-image-social-1200x628.jpg?height=422&name=Phantom-secrets-blog-image-social-1200x628.jpg)](https://blog.aquasec.com/phantom-secrets-undetected-secrets-expose-major-corporations)

## [Phantom Secrets: Undetected Secrets Expose Major Corporations](https://blog.aquasec.com/phantom-secrets-undetected-secrets-expose-major-corporations)

[![Picture of Yakir Kadkoda](https://blog.aquasec.com/hs-fs/hubfs/Yakir-K.jpg?width=48&height=48&name=Yakir-K.jpg)](https://blog.aquasec.com/author/yakir-kadkoda) [![Picture of Ilay Goldman](https://blog.aquasec.com/hs-fs/hubfs/Aqua%20People/Itay_Goldman.jpg?width=48&height=48&name=Itay_Goldman.jpg)](https://blog.aquasec.com/author/ilay-goldman)

[Yakir Kadkoda](https://blog.aquasec.com/author/yakir-kadkoda) [Ilay Goldman](https://blog.aquasec.com/author/ilay-goldman)

 June 26, 2024

For years, we’ve been educating developers not to hard-code secrets into their code. Now it turns out that even doing this once might permanently expose that secret, even after its apparent removal – and worse, most secrets scanning methods will miss it. Our research found that almost 18% of secrets might be …

[Continue reading ›](https://blog.aquasec.com/phantom-secrets-undetected-secrets-expose-major-corporations)

[![Catch Me If You Can: Uncovering Malicious Threats in Container Images](https://blog.aquasec.com/hs-fs/hubfs/Uncovering-Malicious-_Threats-Container-1200x628-blog-social.jpg?height=205&name=Uncovering-Malicious-_Threats-Container-1200x628-blog-social.jpg)](https://blog.aquasec.com/catch-me-if-you-can-uncovering-malicious-threats-in-container-images)

## [Catch Me If You Can: Uncovering Malicious Threats in Container Images](https://blog.aquasec.com/catch-me-if-you-can-uncovering-malicious-threats-in-container-images)

[![Picture of Lena Fuks](https://blog.aquasec.com/hs-fs/hubfs/FullSizeRender%20644.jpg?width=48&height=48&name=FullSizeRender%20644.jpg)](https://blog.aquasec.com/author/lena-fuks)

[Lena Fuks](https://blog.aquasec.com/author/lena-fuks)

 June 20, 2024

What do Frank Abagnale Jr., the notorious con artist from "Catch Me If You Can", the Golden Snitch from "Harry Potter," and the Higgs boson from physics have in common? They're all extremely difficult to catch. Whether it's outsmarting the FBI, eluding a Quidditch player, or taking physicists almost 50 years to …

[Continue reading ›](https://blog.aquasec.com/catch-me-if-you-can-uncovering-malicious-threats-in-container-images)

[![Understanding the Importance of Runtime Security](https://blog.aquasec.com/hs-fs/hubfs/Understanding-the_-Importance-of%20-Runtime-Security-1200x628-main.jpg?height=205&name=Understanding-the_-Importance-of%20-Runtime-Security-1200x628-main.jpg)](https://blog.aquasec.com/understanding-the-importance-of-runtime-security)

## [Understanding the Importance of Runtime Security](https://blog.aquasec.com/understanding-the-importance-of-runtime-security)

[![Picture of Erin Stephan](https://blog.aquasec.com/hs-fs/hubfs/IMG_2817.jpeg?width=48&height=48&name=IMG_2817.jpeg)](https://blog.aquasec.com/author/erin-stephan)

[Erin Stephan](https://blog.aquasec.com/author/erin-stephan)

 June 17, 2024

Gartner has estimated that “90% of global organizations will be running containerized applications in production by 2026—up from 40% in 2021.” 

The inherent benefits of cloud native application development enable developers to introduce new code into the environment at an accelerated rate. However, the dynamic nature …

[Continue reading ›](https://blog.aquasec.com/understanding-the-importance-of-runtime-security)

[![Muhstik Malware Targets Message Queuing Services Applications](https://blog.aquasec.com/hs-fs/hubfs/blog-main-muhstik-1200x628-2024.jpg?height=205&name=blog-main-muhstik-1200x628-2024.jpg)](https://blog.aquasec.com/muhstik-malware-targets-message-queuing-services-applications)

## [Muhstik Malware Targets Message Queuing Services Applications](https://blog.aquasec.com/muhstik-malware-targets-message-queuing-services-applications)

[![Picture of Nitzan Yaakov](https://blog.aquasec.com/hs-fs/hubfs/Nitzaan-Yaakov.jpg?width=48&height=48&name=Nitzaan-Yaakov.jpg)](https://blog.aquasec.com/author/nitzan-yaakov)

[Nitzan Yaakov](https://blog.aquasec.com/author/nitzan-yaakov)

 June 05, 2024

Aqua Nautilus discovered a new campaign of Muhstik malware targeting message queuing services applications, specifically the Apache RocketMQ platform. Our investigation revealed that the attackers downloaded the known malware Muhstik onto the compromised instances by exploiting a known vulnerability in the platform. …

[Continue reading ›](https://blog.aquasec.com/muhstik-malware-targets-message-queuing-services-applications)

[![Linguistic Lumberjack: Understanding CVE-2024-4323 in Fluent Bit](https://blog.aquasec.com/hs-fs/hubfs/no-title-blog-main-Fluent-Bit-1200x628-2024.jpg?height=205&name=no-title-blog-main-Fluent-Bit-1200x628-2024.jpg)](https://blog.aquasec.com/linguistic-lumberjack-understanding-cve-2024-4323-in-fluent-bit)

## [Linguistic Lumberjack: Understanding CVE-2024-4323 in Fluent Bit](https://blog.aquasec.com/linguistic-lumberjack-understanding-cve-2024-4323-in-fluent-bit)

[![Picture of Aqua Team](https://blog.aquasec.com/hubfs/logomark_aqua.svg)](https://blog.aquasec.com/author/aqua-team)

[Aqua Team](https://blog.aquasec.com/author/aqua-team)

 May 25, 2024

Linguistic Lumberjack is a new critical severity vulnerability (CVE-2024-4323) that **affects Fluent Bit versions 2.0.7 through 3.0.3**. The vulnerability involves a memory corruption error, potentially leading to denial of service, information disclosure, or remote code execution. 

[Continue reading ›](https://blog.aquasec.com/linguistic-lumberjack-understanding-cve-2024-4323-in-fluent-bit)

[![Employee Personal GitHub Repos Expose Internal Azure and Red Hat Secrets](https://blog.aquasec.com/hs-fs/hubfs/_blog-main-shadow-IT-1200x628-2024.jpg?height=205&name=_blog-main-shadow-IT-1200x628-2024.jpg)](https://blog.aquasec.com/personal-github-repos-expose-internal-azure-and-red-hat-secrets)

## [Employee Personal GitHub Repos Expose Internal Azure and Red Hat Secrets](https://blog.aquasec.com/personal-github-repos-expose-internal-azure-and-red-hat-secrets)

[![Picture of Yakir Kadkoda](https://blog.aquasec.com/hs-fs/hubfs/Yakir-K.jpg?width=48&height=48&name=Yakir-K.jpg)](https://blog.aquasec.com/author/yakir-kadkoda) [![Picture of Assaf Morag](https://blog.aquasec.com/hs-fs/hubfs/Imported%20sitepage%20images/Assaf%20M%20300x300.jpg?width=48&height=48&name=Assaf%20M%20300x300.jpg)](https://blog.aquasec.com/author/assaf-morag)

[Yakir Kadkoda](https://blog.aquasec.com/author/yakir-kadkoda) [Assaf Morag](https://blog.aquasec.com/author/assaf-morag)

 May 16, 2024

What happens when employees at some of the world’s largest organizations like Microsoft and RedHat use personal GitHub repos for their side projects? They can unknowingly expose corporate secrets and credentials opening the doors for a security incident. Unfortunately, this isn’t just a hypothetical situation. 

[Continue reading ›](https://blog.aquasec.com/personal-github-repos-expose-internal-azure-and-red-hat-secrets)

[![Elevating AWS Kubernetes Security and Compliance](https://blog.aquasec.com/hs-fs/hubfs/_blog-main-AWS-EKS-1200x628-2024.jpg?height=205&name=_blog-main-AWS-EKS-1200x628-2024.jpg)](https://blog.aquasec.com/aws-kubernetes-security-and-compliance)

## [Elevating AWS Kubernetes Security and Compliance](https://blog.aquasec.com/aws-kubernetes-security-and-compliance)

[![Picture of Itamar Evgey](https://blog.aquasec.com/hs-fs/hubfs/MicrosoftTeams-image-May-07-2024-08-53-06-3415-PM.png?width=48&height=48&name=MicrosoftTeams-image-May-07-2024-08-53-06-3415-PM.png)](https://blog.aquasec.com/author/itamar-evgey)

[Itamar Evgey](https://blog.aquasec.com/author/itamar-evgey)

 May 07, 2024

Amazon Elastic Kubernetes Service (Amazon EKS) streamlines the process of deploying, managing, and scaling Kubernetes clusters on Amazon Web Services (AWS), sparing users the complexities of setting up and maintaining their own Kubernetes control plane. Kubernetes itself is an open-source platform designed to automate …

[Continue reading ›](https://blog.aquasec.com/aws-kubernetes-security-and-compliance)

[![Securing GenAI: Safeguarding LLM-Powered Applications with Aqua](https://blog.aquasec.com/hs-fs/hubfs/_blog-main-GenAI-1200x628-2024.jpg?height=205&name=_blog-main-GenAI-1200x628-2024.jpg)](https://blog.aquasec.com/securing-genai-safeguarding-llm-powered-applications-with-aqua)

## [Securing GenAI: Safeguarding LLM-Powered Applications with Aqua](https://blog.aquasec.com/securing-genai-safeguarding-llm-powered-applications-with-aqua)

[![Picture of Amit Sheps](https://blog.aquasec.com/hs-fs/hubfs/MicrosoftTeams-image%20(11)-2.png?width=48&height=48&name=MicrosoftTeams-image%20(11)-2.png)](https://blog.aquasec.com/author/amit-sheps)

[Amit Sheps](https://blog.aquasec.com/author/amit-sheps)

 May 02, 2024

In the rapidly evolving world of artificial intelligence, the rise of Generative AI (GenAI) has sparked a revolution in how we interact with and leverage this technology. GenAI is based on large language models (LLMs) that have demonstrated remarkable capabilities, from generating human-like text to powering …

[Continue reading ›](https://blog.aquasec.com/securing-genai-safeguarding-llm-powered-applications-with-aqua)

[![Setting Sail: Keeping a Weathered Eye on the Horizon of Cloud Security](https://blog.aquasec.com/hs-fs/hubfs/blog-main-Mike-Dube-1200x628-2024.jpg?height=205&name=blog-main-Mike-Dube-1200x628-2024.jpg)](https://blog.aquasec.com/setting-sail-keeping-a-weathered-eye-on-the-horizon-of-cloud-security)

## [Setting Sail: Keeping a Weathered Eye on the Horizon of Cloud Security](https://blog.aquasec.com/setting-sail-keeping-a-weathered-eye-on-the-horizon-of-cloud-security)

[![Picture of Mike Dube](https://blog.aquasec.com/hs-fs/hubfs/Mike-Dube-Headshot-Website-1-e1714501124268-300x300.webp?width=48&height=48&name=Mike-Dube-Headshot-Website-1-e1714501124268-300x300.webp)](https://blog.aquasec.com/author/mike-dube)

[Mike Dube](https://blog.aquasec.com/author/mike-dube)

 May 01, 2024

As I hoist the sail on this new journey with Aqua, I was asked why did I join? Why am I thrilled to be part of this organization and what is it about Aqua’s approach to safeguarding cloud native systems that resonates with me?  For close to 20 years I have experienced building, transforming, and leading go-to-market …

[Continue reading ›](https://blog.aquasec.com/setting-sail-keeping-a-weathered-eye-on-the-horizon-of-cloud-security)

[![Discover Cloud Security Issues Faster with Event-based Scanning](https://blog.aquasec.com/hs-fs/hubfs/blog-main-event-based-scanning-1200x628-2023.png?height=205&name=blog-main-event-based-scanning-1200x628-2023.png)](https://blog.aquasec.com/discover-cloud-security-issues-faster-with-event-based-scanning)

## [Discover Cloud Security Issues Faster with Event-based Scanning](https://blog.aquasec.com/discover-cloud-security-issues-faster-with-event-based-scanning)

[![Picture of Lena Fuks](https://blog.aquasec.com/hs-fs/hubfs/FullSizeRender%20644.jpg?width=48&height=48&name=FullSizeRender%20644.jpg)](https://blog.aquasec.com/author/lena-fuks)

[Lena Fuks](https://blog.aquasec.com/author/lena-fuks)

 April 24, 2024

In today's cloud security landscape, the challenge of keeping pace with evolving threats is daunting for security practitioners. Meanwhile, malicious actors operate at lightning speed, often breaching organizations and extracting valuable data within minutes, if not seconds. Imagine what they could accomplish in 24 …

[Continue reading ›](https://blog.aquasec.com/discover-cloud-security-issues-faster-with-event-based-scanning)

[![Empowering Security: Bridging Talk to Action at RSA 2024](https://blog.aquasec.com/hs-fs/hubfs/blog-main-RSA-1200x628-2024.jpg?height=205&name=blog-main-RSA-1200x628-2024.jpg)](https://blog.aquasec.com/empowering-security-bridging-talk-to-action-at-rsa-2024)

## [Empowering Security: Bridging Talk to Action at RSA 2024](https://blog.aquasec.com/empowering-security-bridging-talk-to-action-at-rsa-2024)

[![Picture of Matt Richards](https://blog.aquasec.com/hs-fs/hubfs/MRichard2.jpg?width=48&height=48&name=MRichard2.jpg)](https://blog.aquasec.com/author/matt-richards)

[Matt Richards](https://blog.aquasec.com/author/matt-richards)

 April 18, 2024

As we gear up for another exciting RSA Conference, it's time to take stock of what's making waves in the world of cybersecurity. Sure, we all know that RSA is the go-to event for all things security, but what's the buzz this year? What are the hot topics? What’s really new?

[Continue reading ›](https://blog.aquasec.com/empowering-security-bridging-talk-to-action-at-rsa-2024)

[← Previous](https://blog.aquasec.com/page/4) [All posts](https://blog.aquasec.com/all) [Next →](https://blog.aquasec.com/page/6)

### Subscribe to Email Updates

### Popular Posts

### Filter by Topic

- [Security Threats (120)](https://blog.aquasec.com/topic/security-threats)
- [Container Security (118)](https://blog.aquasec.com/topic/container-security)
- [Kubernetes Security (97)](https://blog.aquasec.com/topic/kubernetes-security)
- [Cloud Native Security (84)](https://blog.aquasec.com/topic/cloud-native-security)
- [Aqua Open Source (49)](https://blog.aquasec.com/topic/aqua-open-source)
- [Image Vulnerability Scanning (49)](https://blog.aquasec.com/topic/image-vulnerability-scanning)
- [AWS Security (38)](https://blog.aquasec.com/topic/aws-security)
- [Runtime Security (38)](https://blog.aquasec.com/topic/runtime-security)
- [Aqua Security (37)](https://blog.aquasec.com/topic/aqua-security)
- [Vulnerability Management (36)](https://blog.aquasec.com/topic/vulnerability-management)
- [Docker Security (35)](https://blog.aquasec.com/topic/docker-security)
- [Software Supply Chain Security (29)](https://blog.aquasec.com/topic/software-supply-chain-security)
- [CSPM (28)](https://blog.aquasec.com/topic/cspm)
- [Cloud compliance (25)](https://blog.aquasec.com/topic/cloud-compliance)
- [DevSecOps (25)](https://blog.aquasec.com/topic/devsecops)
- [Container Vulnerability (24)](https://blog.aquasec.com/topic/container-vulnerability)
- [CI/CD (17)](https://blog.aquasec.com/topic/ci-cd)
- [CNAPP (17)](https://blog.aquasec.com/topic/cnapp)
- [Supply Chain Attacks (13)](https://blog.aquasec.com/topic/supply-chain-attacks)
- [Secrets (12)](https://blog.aquasec.com/topic/secrets)
- [Application Security (11)](https://blog.aquasec.com/topic/application-security)
- [Serverless-Security (11)](https://blog.aquasec.com/topic/serverless-security)
- [Kubernetes (10)](https://blog.aquasec.com/topic/kubernetes)
- [ebpf (10)](https://blog.aquasec.com/topic/ebpf)
- [Cloud security (9)](https://blog.aquasec.com/topic/cloud-security)
- [Host Security (9)](https://blog.aquasec.com/topic/host-security)
- [Advanced malware protection (8)](https://blog.aquasec.com/topic/advanced-malware-protection)
- [Cloud security conferences (8)](https://blog.aquasec.com/topic/cloud-security-conferences)
- [Fargate (8)](https://blog.aquasec.com/topic/fargate)
- [Hybrid Cloud Security (8)](https://blog.aquasec.com/topic/hybrid-cloud-security)
- [Malware Attacks (8)](https://blog.aquasec.com/topic/malware-attacks)
- [Cloud Workload Protection Platform CWPP (7)](https://blog.aquasec.com/topic/cloud-workload-protection-platform-cwpp)
- [Attack Vector (6)](https://blog.aquasec.com/topic/attack-vector)
- [Container platforms (6)](https://blog.aquasec.com/topic/container-platforms)
- [Google cloud security (6)](https://blog.aquasec.com/topic/google-cloud-security)
- [OpenShift (6)](https://blog.aquasec.com/topic/openshift)
- [SBOMs (6)](https://blog.aquasec.com/topic/sboms)
- [Secure VM (6)](https://blog.aquasec.com/topic/secure-vm)
- [Security Policy (6)](https://blog.aquasec.com/topic/security-policy)
- [Infrastructure-as-Code (IaC) (5)](https://blog.aquasec.com/topic/infrastructure-as-code-iac)
- [Security Automation (5)](https://blog.aquasec.com/topic/security-automation)
- [Windows Containers (5)](https://blog.aquasec.com/topic/windows-containers)
- [Azure security (4)](https://blog.aquasec.com/topic/azure-security)
- [Docker containers (4)](https://blog.aquasec.com/topic/docker-containers)
- [Kubernetes RBAC (4)](https://blog.aquasec.com/topic/kubernetes-rbac)
- [Service Mesh (4)](https://blog.aquasec.com/topic/service-mesh)
- [Container Deployment (3)](https://blog.aquasec.com/topic/container-deployment)
- [IBM Cloud (3)](https://blog.aquasec.com/topic/ibm-cloud)
- [Microservices (3)](https://blog.aquasec.com/topic/microservices)
- [Nano-Segmentation (3)](https://blog.aquasec.com/topic/nano-segmentation)
- [Agentless Security (2)](https://blog.aquasec.com/topic/agentless-security)
- [FaaS (2)](https://blog.aquasec.com/topic/faas)
- [Network Firewall (2)](https://blog.aquasec.com/topic/network-firewall)
- [VMware Tanzu (2)](https://blog.aquasec.com/topic/vmware-tanzu)
- [code security (2)](https://blog.aquasec.com/topic/code-security)
- [Advanced Threat Mitigation (1)](https://blog.aquasec.com/topic/advanced-threat-mitigation)
- [Cloud VM (1)](https://blog.aquasec.com/topic/cloud-vm)
- [Customer Support (1)](https://blog.aquasec.com/topic/customer-support)
- [Drift Prevention (1)](https://blog.aquasec.com/topic/drift-prevention)
- [Kubernetes Authorization (1)](https://blog.aquasec.com/topic/kubernetes-authorization)
- [Network (1)](https://blog.aquasec.com/topic/network)
- [shift Left security (1)](https://blog.aquasec.com/topic/shift-left-security)

Show more...

[Aqua Container Security](https://www.aquasec.com)

<https://www.facebook.com/AquaSecTeam> <https://twitter.com/AquaSecTeam> <https://www.linkedin.com/company/aquasecteam> <https://www.youtube.com/c/AquasecTeam>

Copyright © 2023 Aqua Security Software Ltd.