Featured Image for Falco 0.32.2
Andrea Terzolo

Falco 0.32.2

Today we announce the release of Falco 0.32.2 ๐Ÿฆ…!

Novelties ๐Ÿ†•

This release is really small, like a little ๐Ÿฆ, it only fixes the URL to download the falco BPF probe from Falco download page. A big thank you goes to eric-engberg, who proposed the fix, and as usual to everyone in the community for helping us in spotting these annoying bugs ๐Ÿ›! You make Falco successful ๐Ÿฆ…!

Thanks as always to the Falco maintainers for their support and effort during the entire release process.

Fixes ๐Ÿ›

This release fixes just one bothersome bug:

  • The url from which Falco tryes to download the BPF probe was wrong, eric-engberg proposed the solution in this PR. Thank you again! ๐Ÿ™

Try it! ๐ŸŽ๏ธ

As usual, in case you just want to try out the stable Falco 0.32.2, you can install its packages following the process outlined in the docs:

Do you rather prefer using the container images? No problem at all! ๐Ÿณ

You can read more about running Falco with Docker in the docs.

You can also find the Falcosecurity container images on the public AWS ECR gallery:

What's next ๐Ÿ”ฎ

It's an exciting time for Falco as we see so many great improvements and features. What's more exciting is the fact that there are many great ideas and awesome work going on to make the next big things happen.

Recently, there has been a lot of interest on the shiny new eBPF probe, making use of modern eBPF features like CO-RE, ringbuffer API and new tracing program.

In addition, many people in the community are interested in using Falco to read syscall events and plugin events simultaneously. If you are, I would suggest to take a look at the in-depth design for this new feature!

Let's meet ๐Ÿค

We meet every week in our community calls, if you want to know the latest and the greatest you should join us there!

If you have any questions

Thanks to all the amazing contributors!

Cheers ๐ŸŽŠ