From Observability to Enforcement: Lessons Learned Implementing eBPF Runtime Security
CNCF [Cloud Native Computing Foundation] via YouTube
AI, Data Science & Cloud Certificates from Google, IBM & Meta
AI Engineer - Learn how to integrate AI into software applications
Overview
Google, IBM & Meta Certificates – 40% Off
One Coursera Plus subscription covers most Professional Certificates on Coursera.
Unlock All Certificates
Explore a 42-minute conference talk that delves into the evolution from security observability to enforcement using eBPF in cloud native environments. Learn how eBPF technology is being implemented across runtime security tools like Falco, KubeArmor, and Tetragon for kernel-level security event collection. Discover the Tetragon team's journey in transitioning from retroactive attack detection to proactive attack prevention, covering crucial aspects of security model definition and the hardening of kernel-Kubernetes system interactions. Gain deep technical insights into eBPF-based enforcement mechanisms, understand how they differ from traditional observability approaches, and explore implementation challenges. Master the inner workings of eBPF-based runtime security while learning to navigate common pitfalls in implementation.
Syllabus
From Observability to Enforcement: Lessons Learned Implement... Anna Kapuścińska & Kornilios Kourtis
Taught by
CNCF [Cloud Native Computing Foundation]