Get a Demo
Under Attack?
Screenshot of a security alert from Upwind. The alert details a pod mounted to host filesystem attack, with a timeline graph showing the attack path. The background is a gradient of blue to purple. A pop-up provides event specifics.

Upwind Events – See Everything That’s Happening in Your Cloud

<br />
<b>Warning</b>:  Undefined variable $photo in <b>/nas/content/live/landing173/wp-content/themes/bricks/includes/elements/code.php(236) : eval()'d code</b> on line <b>33</b><br />
<br />
<b>Warning</b>:  Trying to access array offset on value of type null in <b>/nas/content/live/landing173/wp-content/themes/bricks/includes/elements/code.php(236) : eval()'d code</b> on line <b>33</b><br />
Denise Ashur October 20, 2023

Upwind Events – See Everything That’s Happening in Your Cloud

Something big is coming! To increase the level of visibility and transparency in the Upwind Detection module, we have added a new Events Feature, giving you the ability to see and investigate every event that occurs in your cloud environment.

Why is this important?

Instead of only receiving notifications about threat and vulnerability detections that are deemed important, you can now view all events and findings analyzed by Upwind in the newly added “events” tab, even those that don’t pose a critical risk to your organization. This helps in your investigations, root cause analysis and remediations, helping you to track events and get an even deeper understanding of your cloud runtime activity. To learn more about Upwind’s runtime detection and response capabilities, refer to the Upwind Documentation Center (login needed).

Contents

Further Reading

API Custom Threat Detection

Upwind brings Custom Detection Policies for APIs

Every API has a different risk profile. An internal billing endpoint and a public-facing authorization endpoint don't fail the same way. They don't get attacked the same way either. A generic ruleset can't account for that. Custom rules can, and now those rules can see sensitive data too. This new release brings two things together…
KSPM-Agentless-Scanning

Complete KSPM: From Pull Request to Production Runtime

Kubernetes environments move fast. Workloads appear and disappear, container images change continuously, services are exposed, permissions evolve, and development teams deploy updates throughout the day. But most cloud security platforms force practitioners to investigate Kubernetes risk through interfaces designed for the broader cloud, leaving teams to manually filter the noise before they can begin investigating…
Upwind MCP Server

Revolutionizing Security Investigations with the Upwind MCP Server

Frontier AI models combined with a rampant rate of new critical vulnerabilities mean speed and context are everything. When a critical production service starts behaving suspiciously, every second spent jumping between different tools and dashboards is a second lost to a potential attacker. At Upwind, we are excited to introduce a game-changer for security teams:…