// Architecting Secure AI | Subhash Dasyam

HOME Damn Vuln AI Bank ABOUT
☀

Policy-as-Code for AI Workloads in Kubernetes: Kyverno/OPA Patterns for Model and Data Safety

DATE: 2025-12-23T21:26:00+04:00 SYSTEM: Agentic AI
1. Why This MattersYour container is signed. Your image is scanned. Your CVE count is zero.None of that stops a backdoored model from running inference....
$ EXECUTE_READ

A Few of the Crazy Ways to Secure Secrets on Kubernetes / OpenShift

DATE: 2025-06-18T20:36:00+04:00 SYSTEM: Container
Injecting sensitive secrets like API keys, credentials, and tokens into running containers presents significant security challenges that go far beyond the basic Kubernetes Secret mechanisms. While standard approaches li…...
$ EXECUTE_READ
NEXT >

Popular Posts

  • Securing Agentic AI: Architecture, Patterns, and Governance for Enterprise Adoption Part-1
  • Building Privacy Preserving RAG with Homomorphic Encryption
  • Securing Agentic AI: Agent Architecture Patterns - Security Analysis Part-2

SYSTEM TAGS

  • Agentic AI
  • Agents
  • AI
  • ai attacks
  • ai governance
  • ai security
  • Beginner’s Guide to Machine Learning
  • Claude code
  • CNI
  • Container
  • container image
  • container network
  • Container Networking
  • container runtime
  • Container SBOM
  • Container Secrets
  • container vs virtual machine
  • container-series
  • continuous batching
  • crun
  • damn vulnerable AI Bank
  • docker
  • Dockerfile
  • dvaib
  • Encrypted RAG
  • Gen AI
  • GenAI
  • Graceful Degradation
  • inference
  • Kernel Namespaces
  • Kubernetes
  • Kubernetes Namespaces
  • Kubernetes Security
  • linux namespaces
  • LLM
  • Mac OS
  • machine learning
  • MCP
  • MCP Architecture
  • MCP Secure Architecture
  • MOE
  • ollama
  • Openshift
  • paged attention
  • podman
  • RAG
  • RAG+
  • Retrieval Augmented Generation
  • runc
  • SBOM
  • SBOMS
  • Secure RAG
  • tensorflow
  • Transformers