Below the Radar: Identifying Hidden Threats Within the Development Ecosystem
Offered By: CNCF [Cloud Native Computing Foundation] via YouTube
Course Description
Overview
Explore critical threats in the development ecosystem and their impact on cloud-native environment security in this 30-minute conference talk. Delve into the hidden world of exposed secrets in code due to vulnerabilities in source code management platforms. Learn how to identify these exposed secrets before attackers do, gaining insights into the often-overlooked aspects of secret scanning. Examine discovered flaws, with a focus on Kubernetes secrets and their elusive nature. Discuss the concept of Shadow IT and its role in exposing secrets. Through real-world examples, understand how attacker vectors have led to major supply chain attacks on popular platforms. Acquire valuable mitigation strategies and tools, complete with detailed explanations, to enhance your cloud-native security posture.
Syllabus
Below the Radar: Identifying Hidden Threats Within the Development Ecosystem - Yakir Kadkoda
Taught by
CNCF [Cloud Native Computing Foundation]
Related Courses
Building on Microsoft Sentinel PlatformMicrosoft via YouTube Securing Applications and Infrastructure on Kubernetes with Sysdig
Mirantis via YouTube Container Escape in 2021
Hack In The Box Security Conference via YouTube Running at Light Speed - Cloud Native Security Patterns
LASCON via YouTube Controlled Mayhem With Cloud Native Security Pipelines
OWASP Foundation via YouTube