Dive into a hands-on Capture the Flag challenge focused on securing Kubernetes environments in this 1-hour conference talk. Explore various aspects of Kubernetes security, including container escape techniques, webshell exploitation, and cluster vulnerabilities. Learn to identify and mitigate security risks by following a step-by-step walkthrough of both red team (attacker) and blue team (defender) perspectives. Gain practical insights into Kubernetes Engine security, container runtime protection, and essential kubectl commands for enhancing cluster security. Develop a deeper understanding of Kubernetes version-specific vulnerabilities and best practices for maintaining a robust security posture in cloud-native environments.
Kubernetes Security: Capture the Flag and Container Escape - August 2021