Forensic Analysis of Container Checkpoints
Offered By: DevConf via YouTube
Course Description
Overview
Explore forensic container checkpointing, an alpha feature in Kubernetes, in this DevConf.CZ 2023 conference talk. Delve into the process of saving running container states as image files for persistent storage, enabling reconstruction of container processes and data. Discover a range of tools and methods for analyzing container checkpoints, extracting valuable information such as application memory, metadata, timestamps, open files, and network sockets. Learn techniques to recover deleted (ghost) files and examine the captured runtime state of all processes within a container. Gain insights into uncovering evidence of malicious activity through forensic analysis of container checkpoints. Presented by Radostin Stoyanov, this 26-minute talk provides a comprehensive overview of forensic analysis techniques for container checkpoints and their applications in cybersecurity.
Syllabus
Forensic Analysis of Container Checkpoints - DevConf.CZ 2023
Taught by
DevConf
Related Courses
Maintaining Deployment Security in Microsoft AzurePluralsight Microsoft Azure Security Engineer: Configure Advanced Security for Compute
Pluralsight Microsoft Azure Security Technologies (AZ-500) Cert Prep: 2 Implement Platform Protection
LinkedIn Learning Securing Containers and Kubernetes Ecosystem
LinkedIn Learning Performing DevSecOps Automated Security Testing
Pluralsight