RBACdoors - How Cryptominers Exploit RBAC Misconfigurations
Offered By: CNCF [Cloud Native Computing Foundation] via YouTube
Course Description
Overview
Explore a detailed analysis of cryptomining attacks exploiting RBAC misconfigurations in Kubernetes clusters in this 34-minute conference talk by Greg Castle and Vinayak Goyal from Google. Dive into a real-world case study from March, examining how cluster owners accidentally granted privileged access through RBAC misconfiguration. Learn about the attackers' sophisticated techniques, including masquerading as Kubernetes system components and leveraging the certificates API to create powerful access. Discover prevention and detection strategies for such attacks, and gain insights into the prevalence of similar RBAC misconfigurations across the industry. Enhance your understanding of Kubernetes security and stay ahead of emerging threats in cloud-native environments.
Syllabus
RBACdoors: How Cryptominers Are Exploiting RBAC Misconfigs - Greg Castle & Vinayak Goyal, Google
Taught by
CNCF [Cloud Native Computing Foundation]
Related Courses
Security Best Practices in Google CloudGoogle Cloud via Coursera Architecting with Google Kubernetes Engine: Production en Français
Google Cloud via Coursera Configuring and Managing Kubernetes Security
Pluralsight Security Best Practices in Google Cloud
Pluralsight Kubernetes Security: Cluster Hardening
Pluralsight