Mish-Mesh: Abusing the Service Mesh to Compromise Kubernetes Environments
CNCF [Cloud Native Computing Foundation] via YouTube
Overview
Coursera Flash Sale
40% Off Coursera Plus for 3 Months!
Grab it
Explore critical security vulnerabilities in service mesh solutions through this conference talk that demonstrates how common misconfigurations and insecure features in popular platforms like Linkerd and Istio can be exploited to compromise Kubernetes environments. Learn from real-world examples involving major cloud service providers where low-severity vulnerabilities were escalated to critical service takeovers, resulting in unauthorized access to internal systems and sensitive secrets. Discover practical techniques for both attacking and defending Kubernetes environments, while gaining valuable insights into properly configuring service mesh deployments as effective security barriers. Engineers and security teams will benefit from understanding potential weaknesses in their service mesh implementations and learning essential strategies for strengthening their cloud native infrastructure security.
Syllabus
Mish-Mesh: Abusing the Service Mesh to Compromise Kubernetes Environments - H. Ben-Sasson, N. Ohfeld
Taught by
CNCF [Cloud Native Computing Foundation]