A vertical list of colored bars with icons. The top bar is orange with a gear and shield. The sixth bar is pink with a warning icon, highlighted by a mouse cursor. The logo upwind is in the top left corner.

Identify Emerging Vulnerabilities & Threats in Your Environment With Upwind’s Security Feed

Denise Ashur August 15, 2024

Identify Emerging Vulnerabilities & Threats in Your Environment With Upwind’s Security Feed

We are excited to announce the release of the Upwind Security Feed – a native feed accessible from directly within the Upwind platform, providing you with constantly updated information about new and emerging attacks, zero days, and security trends that are relevant to your environment and should be investigated further.

The Upwind Security Research team is constantly monitoring for new vulnerabilities and threats (such as a recent ArgoCD vulnerability we discovered), including zero-day vulnerabilities. Now, you can access that information directly within the Upwind platform – including a built-in analysis of where your environment could be susceptible to critical threats, emerging attacks, and zero-day vulnerabilities

AD_4nXcOqQsguVXSqG7SCmwYxCioAWvW216iizCsM2h-yMA0MV1Yhm6oI_PdUBaei7hhYzlspTqkUh2jjdRr9xS-YFdkOuW-lWEPRXNWdZJ1_lI7iUJ5KWPtCaExYAt4LyXB4_7GN8spKqC2Uhs2h7ZbzFqWdvhI?key=RtpjanCKnJeEg-4ysU47aA

Each finding in the Security Feed will include relevant information about the threat or vulnerability, as well as a link to the Upwind website which has a more detailed analysis. You can also streamline your investigations by immediately viewing the images, associated packages and infrastructure resources in your environment that are subject to this vulnerability or threat, enabling you to quickly find and fix these risks in your environment

AD_4nXdXVvoUxckMqu543teKV2s4YZFKlEMFHKcdXSSOz5-ceIVP0ibpAjeIttmGAm-24b9f2KgsdVdZv6OzDijAxSQGeKzxqfdAP1P54V6QdTRmpm8SxcyHlG6B6tjrFBa4-a7f10xc0uHalW3lpCqsmrht814h?key=RtpjanCKnJeEg-4ysU47aA

Use this new capability to be the first to know about new vulnerabilities, emerging threats, and zero days, automatically identifying where they exist in your environment, and ensuring a proactive approach to remediation. 

For Upwind users who want to learn more about the Security Feed, you can view additional information by visiting the console. For all others, please reach out to us to schedule a demo

Contents

Further Reading

org chart - dark mode

The Org Chart is The Wrong Security Boundary

The department model of dividing companies into groups earned its place. Finance gets the finance applications, engineering gets the repositories, HR gets the HRIS, and the boundaries hold because software was bought per function and used per function. Identity and access management platforms, such as Active Directory and Okta, were built around exactly that. Groups…
behind-the-curtain-part-03

What’s Behind the Curtain? AWS Bedrock AgentCore Runtime Tear Down – Part III

Recap In Part I and Part II, we: Networking and VPC Mode Network Isolation Testing The microVM is assigned an IPv6 address matching the value in the JWT. Across multiple runs, all addresses shared the same 2600:1f18::/32 prefix, but cross-microVM communication always failed. We attempted to reach the host EC2 IMDS by manipulating the route…
behind-the-curtain-part-02

What’s Behind the Curtain? AWS Bedrock AgentCore Runtime Tear Down – Part II

Recap In Part I, we explored the AgentCore Runtime microVM from the inside and discovered we weren't alone - four platform binaries were running alongside our code, and one of them was quietly shipping logs to an AWS-internal S3 bucket. We left off with a question: what can we learn from these internal components, and…
Add the Upwind RSS Feed to Slack
Connect the Upwind RSS Feed to your Slack.
Follow the how-to here.
Threat RSS
Add the Upwind RSS Feed to Slack
Connect the Upwind RSS Feed to your Slack.
Follow the how-to here.
Main RSS