Paint the Picture - Detecting Suspicious Data Patterns in Encrypted Traffic with eBPF and KTLS
Offered By: CNCF [Cloud Native Computing Foundation] via YouTube
Course Description
Overview
Explore advanced techniques for detecting suspicious data patterns in encrypted traffic using eBPF and KTLS in this informative conference talk. Discover how leveraging in-kernel HTTP visibility and kTLS enables comprehensive security monitoring of sensitive data flows between Kubernetes workloads, even when encrypted. Learn about Tetragon's application of eBPF to decrypt TLS traffic using kTLS, and understand how Security Teams can identify sensitive data patterns like social security numbers or exploit signatures in encrypted L7 traffic. Gain insights into this innovative solution that avoids operational complexity and overhead while remaining fully transparent to applications and CNI. Delve into the growing importance of eBPF in detecting malicious events in Cloud Native environments, and explore its capabilities in monitoring suspicious runtime execution, network connections, and file access.
Syllabus
Paint the Picture! - Detecting Suspicious Data Patterns in E... Natalia Reka Ivanko & John Fastabend
Taught by
CNCF [Cloud Native Computing Foundation]
Related Courses
Analyzing Postgres Performance Problems Using Perf and eBPFMicrosoft via YouTube Citus Con - An Event for Postgres - Americas Livestream
Microsoft via YouTube EBPF - The Next Power Tool of SREs
USENIX via YouTube Kernel Tracing With EBPF
media.ccc.de via YouTube Building Observability for 99% Developers
Docker via YouTube