|
🔗 Stories, Tutorials & Articles |
|
|
|
A Technical DevSecOps Adoption Framework ✅ |
|
|
This blog post describes a new DevSecOps adoption framework (created by Vanessa Jackson and Lyndsi Hughes) that guides the planning and implementation of a roadmap to functional CI/CD pipeline capabilities. |
|
|
|
|
|
|
Detect and respond to security events in Azure with Microsoft Sentinel |
|
|
This article presents how to detect and respond to different security events in Azure and DevOps platforms using Microsoft Sentinel |
|
|
|
|
|
|
Linux Security Hardening and Other Tweaks ✅ |
|
|
A collection of kernel and userland settings one can change to improve the security and usability of a Linux system. Targeted at Arch, but should work for other distros too. |
|
|
|
|
|
|
Top 10 Kubernetes Security Risks Every DevSecOps Pro Should Know ✅ |
|
|
The mission to run any containerized application on any infrastructure makes security a challenge on Kubernetes. |
|
|
|
|
|
|
How to Find Secrets that are Accidentally Committed to GIT |
|
|
Secrets that can be exploded to the internet include Slack tokens, Database credentials, cloud access, secret keys and developer tokens. When a secret makes its way to a Git repository, it stays there forever, sitting in one or more of your commits, waiting to be found and used against you. Developers often forget that Git-based repository history is never deleted. Many tools in the market can scan your repository, or commits before pushing, to ensure that no secrets are stored or pushed to the remote origin. |
|
|
|
|
👉 Got something to share? Create your FAUN Page and start publishing your blog posts, tools, and updates. Grow your audience, and get discovered by the developer community. |