Security News > 2021 > May > Aqua Security researchers tapped by the MITRE team to contribute to new container framework
Aqua Security announced that its Team Nautilus researchers were tapped by the MITRE ATT&CK team to contribute to the development of the new Container Framework.
Aqua's contributions help to create a foundation for cloud security methodologies and shape the future of container security by illuminating key cloud native security attack vectors and methods observed in the wild by Aqua's threat research team.
Aqua began sharing insights with the MITRE ATT&CK team in late 2020 on how adversarial behavior in containers can be translated to ATT&CK techniques and sub-techniques.
"We are honored to contribute to MITRE's new container framework," said Idan Revivo, Head of Cybersecurity Research at Aqua.
"Aqua is on the forefront of following the latest threats in cloud security and container security, and we are eager to share our knowledge with the community. We look forward to continuing to support MITRE's efforts and help organizations of all sizes stay ahead of the increasing risks of adversaries."
Team Nautilus focuses on cybersecurity research of the cloud native stack and aims to uncover new vulnerabilities, threats, and attacks in the wild that target containers, Kubernetes, serverless, and public cloud infrastructure - enabling new methods and tools to address them.
News URL
http://feedproxy.google.com/~r/HelpNetSecurity/~3/Lk6BRajNYuI/
Related news
- Researchers Uncover Major Security Vulnerabilities in Industrial MMS Protocol Libraries (source)
- Balancing legal frameworks and enterprise security governance (source)
- WeChat devs introduced security flaws when they modded TLS, say researchers (source)
- Researchers Discover Severe Security Flaws in Major E2EE Cloud Storage Providers (source)
- Enhancing national security: The four pillars of the National Framework for Action (source)
- Apple Opens PCC Source Code for Researchers to Identify Bugs in Cloud AI Security (source)
- Germany drafts law to protect researchers who find security flaws (source)