RT @CloudNativeFdn
The inaugural #CloudNativeSecurityCon drew almost 800 in-person attendees from across the world to share insights and experiences on the security challenges in cloud native technology π π
See more highlights in the #CNScon transparency report!
https://www.cncf.io/reports/cloudnativesecuritycon-north-america-2023-transparency-report/
#CloudNativeSecurityCon #CNSCON
RT @danielbryantuk
If you missed the @CloudNativeFdn's first spin-out #CloudNativeSecurityCon, check out @mostlyRadwan's great @InfoQ coverage: https://www.infoq.com/cloudnativesecuritycon/
Great advice from @pritianka, @cra, @lizrice, @kirankamity, and more! π
Getting ready to fly to Tamp for #CivoNavigate conference. (If you're there, come see my session tomorrow π )
Prepped with content for my flight: sessions I missed at #CloudNativeSecurityCon last week!
#civonavigate #CloudNativeSecurityCon
Thanks to all that attended my #CloudNativeSecurityCon session "Hands-on hacking Kubernetes and Ways to prevent it" (Or will be watching the recording of it later)
As you saw, the final step of the hack failed live on stageβgotta love live demos! I'd love to blame the demo gods, but this was completely self-inflicted! π€¦ββοΈ
The good news is that the workshop repo is now updated with the needed steps to deal with the failure:
https://github.com/snyk-labs/kubernetes-goof/tree/main/workshop
RT @kaslinfields
The videos from #CloudNativeSecurityCon went up lightning fast! There are some really great ones in here, so check it out! Might I suggest starting with @xtineskim & Rob Salmond, @virtualized6ix & @jameshbarton, @eddiezane's, or @ffkiv's talks- or @lizrice's keynote? Links below! https://twitter.com/lizrice/status/1621537355634192385
TIL from @gregcastle and Weston Panther that many Unix binaries can be used to bypass local security restrictions in misconfigured systems (some give you a shell-like interface, even on "distroless" images!) - https://gtfobins.github.io/ #CloudNativeSecurityCon
π― it was a fun evening, and lots of great conversations!
---
RT @mauilion
Thanks everyone who came out to the @isovalent hive mind event. Lots of great conversations and moments.
#CloudNativeSecurityCon
https://twitter.com/mauilion/status/1621179387961036801
Excellent keynote talk today at #CloudNativeSecurityCon by
@mattj_io
on Next Gen Cloud Native Security.
For those attending my workshop at #CloudNativeSecurityCon today, if you want to follow along on your laptop, get a headstart now by making sure you have three prerequisites installed per the setup instructions here: https://github.com/snyk-labs/kubernetes-goof/blob/main/workshop/01-setup.md
RT @kaslinfields
Implementing a network policy to prevent communication with the Death Star from non-empire sources certainly sounds like a good idea. We can also set up granular controls related to the star system of the source space craft. @lizrice @CloudNativeFdn #CloudNativeSecurityCon
RT @kaslinfields
There are a variety of ebpf oss tools that can help you understand your security posture and implement granular control at high performance. Darth Vader so impressed, he's considering the Empire joining the @CloudNativeFdn as an end-user org! π @lizrice #CloudNativeSecurityCon
Waiting on my 4th flight trying to get to #CloudNativeSecurityCon from DFW. (3 cancellations over the last 2 days - one of which after taxing for 3 hours when our plan HIT a de-icing truck and damaged it's wing)
The worst part about traveling out of this city is DFW Airport. It's a crap airport on good days but turns into a complete dumpster fire when weather hits.
Looking forward to seeing lots of familiar faces at #CloudNativeSecurityCon. If you're here, be sure to check out my presentation on Thursday about the work OCI has been doing to associate artifacts with images. https://sched.co/1FV2m. #cnscon
#CloudNativeSecurityCon #CNSCon
Unfortunately, my US Visa did not get here in time so I had to cancel my #SBOM talk at #CloudNativeSecurityCon π
Sorry to be missing everyone! Perhaps, I can deliver it at another forum soon. Keep the SBOM ball rolling for me!
RT @chainguard_dev@twitter.com
Are you attending #CloudNativeSecurityCon in Seattle? Come meet us and learn how to secure your software supply chains by default! Full line up here: π
https://www.chainguard.dev/unchained/come-see-us-at-cloudnativesecuritycon-in-seattle-feb-1-2
π¦π: https://twitter.com/chainguard_dev/status/1619345813766897666
Originally posted by The Linux Foundation / @linuxfoundation@twitter.com: https://twitter.com/OpenSearchProj/status/1619087141765521408#m
RT by @linuxfoundation: Proud to be a platinum sponsor for #CloudNativeSecurityCon!! ππ
RT @CloudNativeFdn
Why should you attend #CloudNativeSecurityCon?
Hear from co-chair @lizrice about what she is most excited about β from amazing keynote to tutorials, there are tons of activities to take part in π€
Register now! https://events.linuxfoundation.org/cloudnativesecuritycon-north-america/register/
RT @CloudNativeFdn
eBPF, SBOMs, and more!
@cra discusses security topics that will be important in 2023 and beyond and calls out some of the #CloudNativeSecurityCon sessions where you can learn more π
Register to join us Feb. 1-2 in Seattle!
https://www.cncf.io/blog/2023/01/17/cloudnativesecuritycon-2023-3-key-areas-to-watch/
Base images are very crucial for building secure container images. Recent research by both @chainguard_dev and @SlimDevOps has also shown this. We have many great tools to help us achieve that goal. We (w/@cloudnativeboy) sent an application to #CloudNativeSecurityCon to talk more about them. π«Ά