惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

aimingoo的专栏
aimingoo的专栏
WordPress大学
WordPress大学
阮一峰的网络日志
阮一峰的网络日志
博客园 - 司徒正美
月光博客
月光博客
宝玉的分享
宝玉的分享
Recent Announcements
Recent Announcements
小众软件
小众软件
H
Hackread – Cybersecurity News, Data Breaches, AI and More
美团技术团队
博客园 - 三生石上(FineUI控件)
A
About on SuperTechFans
J
Java Code Geeks
云风的 BLOG
云风的 BLOG
罗磊的独立博客
大猫的无限游戏
大猫的无限游戏
IT之家
IT之家
Vercel News
Vercel News
量子位
Martin Fowler
Martin Fowler
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
V
Visual Studio Blog
腾讯CDC
有赞技术团队
有赞技术团队

Wiz Blog | RSS feed

Meet Wiz for M365: Bringing SaaS into the Security Graph Bringing Security Visibility to Vercel with Wiz Axios NPM Distribution Compromised in Supply Chain Attack Tracking TeamPCP: Investigating Post-Compromise Attacks Seen in the Wild The Wiz Blue Agent, now Generally Available Beyond the Badge: What Achieving Microsoft’s Certified Software Designation Means for Your Cloud Security Introducing the Green Agent: AI-Powered Remediation for the Cloud Three’s a Crowd: TeamPCP trojanizes LiteLLM in Continuation of Campaign KICS GitHub Action Compromised: TeamPCP Strikes Again in Supply Chain Attack Introducing the Wiz Red Agent- AI-Powered Attacker Introducing Wiz AI Application Protection Platform (AI-APP) Introducing Wiz Agents & Workflows: Security at the Speed of AI AI Runtime Threat Detection: From Input to Real-World Impact Trivy Compromised: Everything You Need to Know about the Latest Supply Chain Attack It’s Official: Wiz Joins Google Understanding and Reducing AI Risk in Modern Applications Introducing Wiz Tenant Manager: Multi-Tenant Management for Federated Organizations The Agile FedRAMP Playbook, Part 4: Reactive Risk Management through Enriched Incident Response Wiz Achieves CPSTIC Certification in Spain Seeing AI Clearly: Building Visibility Across Modern AI Applications The Agile FedRAMP Playbook, Part 3: Preventative Risk Management by building Secure by Design Wiz Leads the 2026 Latio Application Security Report with awards in 4 categories Building an Agentic Cloud Security Ecosystem: A Reference Architecture with Wiz MCP and Infosys Cyber Next The Agile FedRAMP Playbook, Part 2: Proactive Risk Management with Continuous Monitoring Cloud-native Security for your Windows environment: Announcing the Wiz Runtime Sensor for Windows Would You Click ‘Accept’? Automatically detecting malicious Azure OAuth applications using LLMs Wiz Named a Leader in The Forrester Wave™: Cloud Native Application Protection Solutions, Q1 2026 From Detection to Remediation: It’s Time to Rethink AppSec Around Exploitability and Root Cause Fixes The Agile FedRAMP Playbook, Part 1: Why Risk is Your Best Starting Point Introducing AI Cyber Model Arena: A Real-World Benchmark for AI Agents in Cybersecurity
Top security talks from KubeCon Europe 2024
Shay Berkovich · 2024-04-02 · via Wiz Blog | RSS feed

KubeCon + CloudNativeCon Europe 2024 took place last week in Paris Expo de Versailles with over 12,000 attendees. All the conference’s videos have been promptly released on YouTube, some of them within a day of the talk delivery. Kudos to CNCF for such a prompt content turnaround. Overall, there are 246 (!) videos on the KubeCon 2024 playlist

Some of our favorite KubeCon 2024 sessions 

Brewing the Kubernetes Storm Center: Open Source Threat Intelligence for the Cloud Native Ecosystem
It is always interesting to see collaboration between academia and industry, especially in such a tricky area as threat intelligence. Constanze Roedig from TU Wien and James Callaghan from ControlPlane presented their work around collection and dissemination of threat intel in Kubernetes. While Wiz’ Cloud Threat Landscape is a static database, the proposed project takes it a step further and suggests a framework for TI collection (based on eBPF sensors), processing and distribution in STIX/TAXII formats. 

Securing 900 Kubernetes Clusters Without PSP
This is a practical walkthrough through the end-user experience of applying admission controller policies at scale. Tobias Giese and Tjark Rasche describe their policies deployment journey in Mercedes-Benz Tech Innovation, from Pod Security Admission to Validating Admission Policies, while clearly demonstrating the challenges with each method — inflexibility of PSA, policy complexity of OPA, and performance issues in Kyverno. There is something for every practitioner looking to harden their cluster setup. 

Building Container Images the Modern Way
As we go higher in abstraction levels with Kubernetes, we might forget that the foundation of container security is a container image. Adrian Mouat from Chainguard gives a fresh perspective on the process of building images. He introduces several ways to build distroless and lightweight images and offers a valuable recommendation for container build solutions when a docker build is not enough. 

eBPF’s Abilities and Limitations: The Truth
Even though the hype around eBPF has toned down, there are still a lot of misconceptions around eBPF capabilities. Liz Rice and John Fastabend from Isovalent give a realistic rundown of eBPF strengths and weaknesses – something that can help any developer before starting a new project. Or in our case, understand the limitations of applying eBPF as part of a security solution.   

I'll Let Myself In: Kubernetes Privilege Escalation Tactics
Iain Smart and Andrew Martin show a behind-the-stage look at the engagements they have experienced in Control Plane and discuss various privilege escalation techniques they use. I particularly enjoyed the second part of the presentation that talks about rarely mentioned post-compromise activities in the cluster — how attackers can hide their tracks, avoid detection, and achieve silent persistence. This part resonated with our own talk (mentioned below). 

...and two noteworthy talks from Wiz 

Wiz had a powerful representation at this conference with two talks of our own. If you're a beginner / intermediate in the world of Kubernetes, your first security concern should be blocking malicious initial access to your clusters. The session entitled Why Barricade the Door if the Window is Open? Making Sense of Kubernetes Initial Access Vectors will do just that — explain the various ways attackers can gain initial access, while also providing useful detection and protection recommendations for each of those vectors. Finally, if you run managed GKE, AKS, or EKS clusters and want to know what kind of security risks they carry, you are invited to watch our talk Living off the Land Techniques in Managed Kubernetes Clusters. It sheds light on methods attackers can use to abuse existing services in managed Kubernetes clusters and reveals some cool attack chains generating from middleware components with which you might not be familiar. 

We highly recommend attending KubeCon Europe! And if you’re interested in more beginner-level information on Kubernetes, see our CloudSec Academy section on Kubernetes Security Best Practices, or download our guide to Kubernetes Security for Dummies