‹ Blogs
KubeCon EU '23: Open Source Releases

Published on
April 21, 2023
Author
Andrew Martin

This year at KubeCon we have the pleasure of open sourcing a variety of cloud native security tooling, representing thousands of hours of thought and build time! We’re excited to reveal the immediate release of:
- Netassert v2: a security testing framework for fast, safe iteration on firewall, routing, NetworkPolicy and NACL rules for Kubernetes and non-containerised hosts
- Collie: NIST 800-53r5 compliant OSCAL, Kyverno, Crossplane and Lula automated compliance validation
- Threat Modelling Zero Trust: What Can Go Wrong When You Trust Nobody? Threat Modeling Zero Trust
- Argo CD End User Threat Model: Security considerations for hardening Declarative GitOps CD on Kubernetes, written for the CNCF and Intuit
And pending the relevant talks to announce it:
- Kubernetes for SOC (coming next week!): a set of threat libraries focused on security operations centres for highly regulated and sensitive environments
If you’d like to discuss features or enterprise support of any of our Open Source tooling, arrange a call with our technical leaders.
Related blogs

Blog
Sovereign Signing: A Self-Hosted Supply Chain with OpenBao, Cosign, and Flux CD
A fully self-hosted software supply chain signing pipeline (OpenBao holds the key, Cosign signs, Flux CD verifies) with no public cloud KMS and no public Sigstore infrastructure.
supply-chain
security
gitops
flux-cd
open-source
kubernetes

Blog
Internal ≠ Isolated (Or Secure): The Argo CD Repo-Server Flaw
An unpatched, unauthenticated RCE in the Argo CD repo-server that can chain into full Kubernetes cluster takeover.
security
threat-modeling
kubernetes
gitops

Blog
Validating Zero Trust: Network Policy Testing with Flux CD and Netassert
security
networking
kubernetes
ci-cd
blue-team
flux-cd
gitops
zero-trust