SECURITY Signal 469
Cortex completes OSTIF security audit
Operators running Cortex for multi-tenant observability data can now deploy a version with verified fixes for seven security findings, including six medium-severity issues. The audit specifically validated the confidentiality, integrity, and availability of tenant boundaries and cluster operations, which are critical for multi-tenant isolation.
Written by elseif from the cluster below · every claim links back to a sourceThe three things worth knowing
Quarkslab performed a whitebox code review and dynamic testing focusing on tenant boundary and cluster operations security.
The audit identified seven findings with security impact, categorized as six medium and one low.
All identified findings have undergone verified fixes, requiring users to update to the most recent Cortex release.
THE CLUSTER
↗