Close Menu
Beverly Hills Examiner

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    The Cure’s Perry Bamonte Dies at 65

    January 1, 2026

    Copper records biggest annual gain since 2009 on supply bets

    January 1, 2026

    Trump Takes One Final Big Loss In Court Before The End Of The Year

    January 1, 2026
    Facebook X (Twitter) Instagram
    Beverly Hills Examiner
    • Home
    • US News
    • Politics
    • Business
    • Science
    • Technology
    • Lifestyle
    • Music
    • Television
    • Film
    • Books
    • Contact
      • About
      • Amazon Disclaimer
      • DMCA / Copyrights Disclaimer
      • Terms and Conditions
      • Privacy Policy
    Beverly Hills Examiner
    Home»Technology»There’s Finally a Way to Improve Cloud Container Registry Security
    Technology

    There’s Finally a Way to Improve Cloud Container Registry Security

    By AdminMay 23, 2023
    Facebook Twitter Pinterest LinkedIn WhatsApp Email Reddit Telegram
    There’s Finally a Way to Improve Cloud Container Registry Security


    As software supply chain attacks have emerged as an everyday threat, where bad actors poison a step in the development or distribution process, the tech industry has had a wake-up call about the need to secure each link in the chain. But actually implementing improvements is challenging, particularly for the sprawling open source cloud development ecosystem. Now, the security firm Chainguard says it has a more secure solution for one ubiquitous but long-overlooked component.

    “Container registries” are a sort of app store or clearinghouse where developers upload “images” of cloud containers that each hold a different software program. The cloud services you use every day are constantly and silently navigating container registries to access applications, but these registries are often poorly secured with just a password that can be lost, stolen, or guessed. This often means that people who shouldn’t have access to a given container image can download it or, worse, they can upload to the registry images that could be malicious. Chainguard’s new container image registry aims to plug this esoteric but pervasive hole.

     “Pretty much every bad possible thing has happened with container registries that you can imagine,” says Dan Lorenc, Chainguard’s CEO and a longtime software supply chain security researcher. “People losing passwords, people pushing malware on purpose, people forgetting to update stuff. The industry has just kind of been using this for a long time—everyone was having fun, shipping code, and nobody was thinking about long-term consequences.”

    The Chainguard researchers say they have long considered developing a more thoughtfully designed registry, particularly one that gets rid of passwords and instead uses a single sign-on approach to control registry access. That way, a registry can be designed to be as accessible or as locked down as needed, and only people who are logged into other accounts, like corporate identity services or Google accounts, and then specifically authorized can interact with the registry.

    “Container registries have been a weak link,” says Jason Hall, a Chainguard software engineer. “They’re pretty boring, pretty standard. This is software that’s relying on software to deliver software. We need to do better and get rid of passwords to talk to the registry and be able to push to the registry.”

    The big limitation on deploying a system like this, though, has been cost. Running a container registry typically gets very expensive because of “egress fees.” In other words, cloud providers don’t charge enterprise customers to upload data into the cloud, but they do charge them every time someone downloads the data. So if container registries are like an app store where everyone is coming to download container images, the egress fees can get really big really fast. This disincentivized work on overhauling the security of container registries because no one wanted to take on the cost associated with offering a more secure alternative.

    The breakthrough for Chainguard came when the internet infrastructure company Cloudflare announced the general availability of its R2 Storage service in September. The goal of the product is to offer reduced egress fees to Cloudflare customers and even no fees for data that gets downloaded infrequently. Once R2 emerged as an option, the Chainguard researchers had everything they needed to move ahead with a more secure registry.



    Original Source Link

    Share. Facebook Twitter Pinterest LinkedIn WhatsApp Email Reddit Telegram
    Previous ArticleEthereum closed a big security hole with its energy-saving update
    Next Article Biden climate warrior nominee who argued for higher energy prices has stake in oil and gas firm

    RELATED POSTS

    ‘College dropout’ has become the most coveted startup founder credential

    January 1, 2026

    Factor Meal Delivery Promo: Free $200 Withings Body-Scan Scale

    December 31, 2025

    The phone is dead. Long live . . . what exactly?

    December 31, 2025

    Commodore 64 Ultimate Review: An Astonishing Remake

    December 30, 2025

    Meta just bought Manus, an AI startup everyone has been talking about

    December 30, 2025

    iMP Tech Mini Arcade Pro Review: A Nintendo Switch Arcade Cabinet

    December 29, 2025
    latest posts

    The Cure’s Perry Bamonte Dies at 65

    Perry Bamonte, the Cure’s longtime guitarist and keyboardist, has died following an undisclosed illness. He…

    Copper records biggest annual gain since 2009 on supply bets

    January 1, 2026

    Trump Takes One Final Big Loss In Court Before The End Of The Year

    January 1, 2026

    Zohran Mamdani sworn in as NYC mayor in midnight ceremony at Old City Hall

    January 1, 2026

    ‘College dropout’ has become the most coveted startup founder credential

    January 1, 2026

    Poor Sleep Quality Accelerates Brain Aging

    January 1, 2026

    Avengers, Toy Story 5, The Odyssey

    January 1, 2026
    Categories
    • Books (970)
    • Business (5,878)
    • Film (5,812)
    • Lifestyle (3,915)
    • Music (5,880)
    • Politics (5,882)
    • Science (5,224)
    • Technology (5,811)
    • Television (5,497)
    • Uncategorized (2)
    • US News (5,863)
    popular posts

    117 Of The Best Pickup Lines: Our Greatest Smooth, Funny And Flirty Lines for 2022

    When it comes to breaking the ice, there’s nothing quite as effective as one of…

    Poll: 83% Of Americans Cutting Back On Personal Spending Due To Inflation

    July 3, 2022

    AI should be seen as an ally to human mathematicians, not a threat

    June 10, 2022

    ‘Sopranos’ Star Remembered by Steven Van Zandt – Billboard

    July 10, 2022
    Archives
    Browse By Category
    • Books (970)
    • Business (5,878)
    • Film (5,812)
    • Lifestyle (3,915)
    • Music (5,880)
    • Politics (5,882)
    • Science (5,224)
    • Technology (5,811)
    • Television (5,497)
    • Uncategorized (2)
    • US News (5,863)
    About Us

    We are a creativity led international team with a digital soul. Our work is a custom built by the storytellers and strategists with a flair for exploiting the latest advancements in media and technology.

    Most of all, we stand behind our ideas and believe in creativity as the most powerful force in business.

    What makes us Different

    We care. We collaborate. We do great work. And we do it with a smile, because we’re pretty damn excited to do what we do. If you would like details on what else we can do visit out Contact page.

    Our Picks

    Poor Sleep Quality Accelerates Brain Aging

    January 1, 2026

    Avengers, Toy Story 5, The Odyssey

    January 1, 2026

    ‘The Challenge’ Star Reveals Horrific Accident Blinded Him

    January 1, 2026
    © 2026 Beverly Hills Examiner. All rights reserved. All articles, images, product names, logos, and brands are property of their respective owners. All company, product and service names used in this website are for identification purposes only. Use of these names, logos, and brands does not imply endorsement unless specified. By using this site, you agree to the Terms & Conditions and Privacy Policy.

    Type above and press Enter to search. Press Esc to cancel.

    We use cookies on our website to give you the most relevant experience by remembering your preferences and repeat visits. By clicking “Accept All”, you consent to the use of ALL the cookies. However, you may visit "Cookie Settings" to provide a controlled consent.
    Cookie SettingsAccept All
    Manage consent

    Privacy Overview

    This website uses cookies to improve your experience while you navigate through the website. Out of these, the cookies that are categorized as necessary are stored on your browser as they are essential for the working of basic functionalities of the website. We also use third-party cookies that help us analyze and understand how you use this website. These cookies will be stored in your browser only with your consent. You also have the option to opt-out of these cookies. But opting out of some of these cookies may affect your browsing experience.
    Necessary
    Always Enabled
    Necessary cookies are absolutely essential for the website to function properly. These cookies ensure basic functionalities and security features of the website, anonymously.
    CookieDurationDescription
    cookielawinfo-checkbox-analytics11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Analytics".
    cookielawinfo-checkbox-functional11 monthsThe cookie is set by GDPR cookie consent to record the user consent for the cookies in the category "Functional".
    cookielawinfo-checkbox-necessary11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookies is used to store the user consent for the cookies in the category "Necessary".
    cookielawinfo-checkbox-others11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Other.
    cookielawinfo-checkbox-performance11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Performance".
    viewed_cookie_policy11 monthsThe cookie is set by the GDPR Cookie Consent plugin and is used to store whether or not user has consented to the use of cookies. It does not store any personal data.
    Functional
    Functional cookies help to perform certain functionalities like sharing the content of the website on social media platforms, collect feedbacks, and other third-party features.
    Performance
    Performance cookies are used to understand and analyze the key performance indexes of the website which helps in delivering a better user experience for the visitors.
    Analytics
    Analytical cookies are used to understand how visitors interact with the website. These cookies help provide information on metrics the number of visitors, bounce rate, traffic source, etc.
    Advertisement
    Advertisement cookies are used to provide visitors with relevant ads and marketing campaigns. These cookies track visitors across websites and collect information to provide customized ads.
    Others
    Other uncategorized cookies are those that are being analyzed and have not been classified into a category as yet.
    SAVE & ACCEPT