Загрузка...

What Is Kubescape? Scanning Kubernetes for Real Security Risks

Kubernetes security is a lot. For starters, you have to concern yourself with infrastructure configurations, workload settings, RBAC permissions and container vulnerabilities. And once you discover issues in each of these areas, how do you know what issues to fix, and how to fix those issues?

Whitney Lee and Ben Hirschberg (CTO of ARMO and Kubescape maintainer) explain how Kubescape scans your cluster across five dimensions — from API server configuration to container vulnerabilities — and tells you what to fix and how. Whitney and Ben cover how Kubescape combines OPA-based policy scanning, Grype-powered vulnerability detection, and eBPF runtime monitoring to cut through the noise and show you what high-impact changes are needed.

Kubescape is a CNCF Incubating project, originally inspired by the NSA Kubernetes Hardening Guide.

Prefer the full ⚡ Enlightning episode?
Kubescape: Kubernetes Security Scanning → https://youtu.be/LWmKabIerOQ

Watch all ⚡ Enlightning episodes → https://www.youtube.com/playlist?list=PLBexUsYDijaz09nH8BVPmPio_16V115i4

Watch all 🌩️ Thunder episodes → https://www.youtube.com/playlist?list=PLBexUsYDijawXI7x707H1YDdNT2vi98e_

( ᐛ ) Subscribe to Whitney's YouTube channel → https://www.youtube.com/@wiggitywhitney

#Kubescape #KubernetesSecurity #CloudNative #CNCF #Vulnerabilities #eBPF

▬▬▬▬▬▬ ⚡️ Related Links ⚡️ ▬▬▬▬▬▬
🔗 Kubescape → https://kubescape.io
🔗 Kubescape GitHub → https://github.com/kubescape
🔗 NSA Kubernetes Hardening Guide → https://media.defense.gov/2022/Aug/29/2003066362/-1/-1/0/CTR_KUBERNETES_HARDENING_GUIDANCE_1.2_20220829.PDF
🔗 CNCF Slack → https://slack.cncf.io (channel: #kubescape)

00:00 - Intro: Your K8s Cluster Has a Security Problem
00:43 - Before Kubescape: The Dark Ages of K8s Security
02:11 - What is Kubescape?
02:40 - Understanding Key Security Terms (Hardening, Posture, Vulnerability)
05:20 - The 2 Main Attack Vectors in Kubernetes
06:58 - How Kubescape Scans Your Cluster (5 Key Ways)
13:10 - How to Use Kubescape (CLI vs. Operator)
14:52 - A Library of Pre-Built Security Policies
15:52 - How to Get Started with Kubescape

Видео What Is Kubescape? Scanning Kubernetes for Real Security Risks канала wiggitywhitney
Яндекс.Метрика
Все заметки Новая заметка Страницу в заметки
Страницу в закладки Мои закладки
На информационно-развлекательном портале SALDA.WS применяются cookie-файлы. Нажимая кнопку Принять, вы подтверждаете свое согласие на их использование.
О CookiesНапомнить позжеПринять