YoVDO

Verifiable eBPF Traces for Supply Chain Artifacts with Witness and Tetragon

Offered By: CNCF [Cloud Native Computing Foundation] via YouTube

Tags

Supply Chain Security Courses Cloud-Native Security Courses eBPF Courses

Course Description

Overview

Save Big on Coursera Plus. 7,000+ courses at $160 off. Limited Time Only!
Explore how Cillium Tetragon and Witness integration simplifies the process of validating build environments and detecting tampered tooling in this 27-minute conference talk. Discover the Witness framework for supply chain security, which implements the in-toto specification and features a modular design extendable for various attestors, backends, and key providers. Learn about an attestation plugin that programs Cillum Tetragon to provide detailed eBPF traces of build steps. Examine the creation of a build policy that verifies traces and blocks the execution of workloads compiled by malicious compilers. Gain insights into enhancing supply chain security and improving the validation process for developers and security engineers.

Syllabus

Verifiable eBPF Traces for Supply Chain Artifacts with Witness and Tetragon - Cole Kennedy


Taught by

CNCF [Cloud Native Computing Foundation]

Related Courses

Analyzing Postgres Performance Problems Using Perf and eBPF
Microsoft via YouTube
Citus Con - An Event for Postgres - Americas Livestream
Microsoft via YouTube
EBPF - The Next Power Tool of SREs
USENIX via YouTube
Kernel Tracing With EBPF
media.ccc.de via YouTube
Building Observability for 99% Developers
Docker via YouTube