Learn EDR Internals: Research & Development From The Masters
Learn AI, Data Science & Business — Earn Certificates That Get You Hired
Overview
Google, IBM & Meta Certificates – 40% Off
One Coursera Plus subscription covers most Professional Certificates on Coursera.
Unlock All Certificates
Learn how to protect Tekton tasks from software supply chain attacks using Confidential Containers technology in this 18-minute conference talk. Explore the emerging threat of software supply chain attacks where attackers gain internal network access through social engineering, escalate to administrator privileges, and inject backdoors into built artifacts to steal confidential information or digital assets. Discover how Confidential Containers, an open source project, addresses the critical attack surface of software supply chain administrators by leveraging trusted execution environments (TEEs) to protect containers from administrators themselves. Understand the implementation of Confidential Containers to safeguard Kubernetes pods from cluster administrators by running pods inside TEEs and validating them through remote attestation. Examine a practical use case demonstrating how Confidential Containers can secure Tekton tasks and artifacts even when cluster administrators are compromised, providing essential protection for enterprise software supply chains.
Syllabus
A Secure Tekton Task by Using Confidential Containers - Tatsushi Inagaki, IBM
Taught by
Linux Foundation