Kubernetes

Kubernetes nodes/proxy GET → RCE: how “telemetry” permissions can compromise a cluster

A subtle (and frankly surprising) Kubernetes authorization behavior has resurfaced as a practical cluster-compromise path: an identity granted nodes/proxy access with an HTTP Get can be leveraged to execute commands in Pods across the cluster—effectively turning what many teams treat as “read-only node telemetry access”…

0

CNCF Annual Cloud Native Survey 2025: Kubernetes Is Becoming the Default AI Runtime – But “AI Platform Readiness” Is the Real Differentiator

A familiar pattern is playing out again. A decade ago, the big shift wasn’t “containers” themselves—it was everything that had to solidify around them: repeatable delivery, production operations, observability, and guardrails that made change safe, i.e. making everything container-native. Many of us at Nirmata lived…

0
Platform Engineering's New Superpower Capturing Specialized Knowledge with Anthropic SKILLs

Platform Engineering’s New Superpower – Capturing Specialized Knowledge with Anthropic SKILLs

Platform engineers face an impossible challenge: mastering dozens of specialized systems without a team of dedicated experts.  Modern platform teams must manage: Kubernetes orchestration and configuration Database performance optimization (MongoDB, PostgreSQL, etc.) Cloud infrastructure across AWS, Azure, and GCP Security policy enforcement with tools like…

0
Beyond Authentication

Meet the World’s First AI Platform Engineering Assistant

Cloud-native infrastructure, in the age of AI, has never been more powerful or more complex. Today, platform engineering teams manage thousands of clusters, configurations, and compliance requirements across Kubernetes, Infrastructure-as-Code (IaC), and multiple clouds. Enter AI platform engineering. Nirmata’s AI Platform Engineering Assistant is the first…

0
Technical Guide TerraForm Cloud Run Task Integration Blog

Technical Guide: Nirmata Terraform Cloud (TFC) Run Task Integration

Overview The Nirmata and HashiCorp Terraform Cloud (TFC) integration enables policy-as-code validation and continuous governance across your entire Infrastructure-as-Code (IaC) lifecycle. Terraform defines what infrastructure to provision; Nirmata governs how that infrastructure is configured and managed after provisioning. Together, they enable a secure-by-design, fully automated…

0
From Alerts to Action V2

Remediator Agent for Kubernetes – AI-Powered Policy Remediation

Kubernetes gives teams incredible power and flexibility—but it’s also noisy. Every day, platform and security teams encounter a flood of policy violations, including missing resource limits, insecure container settings, deprecated APIs, and more.  Fixing them typically means opening a ticket, chasing down the right developer,…

0
PaC Agent Blog Image

The Policy-as-Code AI Agent: Smarter Kubernetes Governance & Security

Policies are the backbone of Kubernetes governance. They enforce security, compliance, and operational best practices. However, for most teams, policy authoring feels like a source of friction: endless YAML, fragmented documentation, and excessive trial-and-error. The Policy-as-Code (PaC) Agent changes that. Instead of wrestling with syntax,…

0