Aqua News

Contact Aqua PR

Aqua Security and CIS release first formal guidelines for software supply chain security

June 22, 2022

By codifying guidelines for each category, Aqua Security and CIS aim to establish industry-wide best practices and recommendations for mitigating open-source software risks, and to support new standards including supply-chain levels for software artifacts (SLSA) and the update framework (TUF).

Read more

Aqua Security Collaborates With Center for Internet Security to Create Guide for Software Supply Chain Security

June 22, 2022

Developed through collaboration between the two organizations, the CIS Software Supply Chain Security Guide provides more than 100 foundational recommendations that can be applied across a variety of commonly used technologies and platforms.

Read more

Aqua Security Collaborates with CIS to Create the First Guide for Software Supply Chain Security

June 22, 2022

BOSTON— June 22, 2022 — Aqua Security, the leading pure-play cloud native security provider, and the Center for Internet Security (CIS), an independent, nonprofit organization with a mission to create confidence in the connected world, today released the industry’s first formal guidelines for software supply chain security. Developed through collaboration between the two organizations, the …

Read more

Aqua Security launches cloud native security Saas in APAC

June 15, 2022

With SaaS in Singapore, Aqua says its customers in government, banking, financial services as well as other regulated sectors can use the service for comprehensive cloud native security, compliance and risk management.

Read more

Aqua Security offers SaaS from Singapore

June 15, 2022

According to Aqua, operating SaaS products in Singapore means that customers in governments, banks, financial services, and other regulated sectors will have comprehensive cloud-native security, compliance, and risk management services in the region.

Read more

Travis CI exposes free-tier users’ secrets – new claim

June 14, 2022

In a blog post Aqua security researchers Yakir Kadkoda, Ilay Goldman, Assaf Morag, and Ofek Itach said they had found tens of thousands of user tokens were accessible through the Travis CI API, which provides a way to fetch clear-text log files.

Read more

Aqua Security Launches Enterprise Cloud Native Security SaaS in APJ

June 14, 2022

Singapore — June 14, 2022 — Aqua Security, the leading pure-play cloud native security provider, today announced the general availability (GA) of cloud native security SaaS in Singapore, serving the broader APJ region. Customers can immediately take advantage of the data sovereignty, platform security and flexibility provided by the SaaS service to prevent cloud native …

Read more

Credentials for thousands of open source projects free for the taking – again!

June 13, 2022

These access keys and credentials are linked to popular cloud service providers, including GitHub, AWS, and Docker Hub,” Aqua Security said. “Attackers can use this sensitive data to initiate massive cyberattacks and to move laterally in the cloud. Anyone who has ever used Travis CI is potentially exposed, so we recommend rotating your keys immediately.

Read more