The Hitchhiker's Guide to Kubernetes Vulnerabilities
CNCF [Cloud Native Computing Foundation] via YouTube
Earn a Michigan Engineering AI Certificate — Stay Ahead of the AI Revolution
AI Engineer - Learn how to integrate AI into software applications
Overview
Syllabus
Intro
Introductions
Why this talk
What is a vulnerability
Security Response Committee
Lifetime of a kes vuln
Security Supported Versions
A brief history of K8s Security
Where to get vulnerability data
Vulnerability Distribution
Issue Lifetime
Bug Bounty Finds
Common Weaknesses
CWE - Kubernetes All Time
CWE - 2020-2021
CVSSv3 means rescoring!
Key Takeaways
Taught by
CNCF [Cloud Native Computing Foundation]