filmov
tv
Container Runtime Security with Falco

Показать описание
Michael Ducy, sysdig
Host intrusion detection (HID) has been around for some time. What if we rethought the problems HID solves in the context of Cloud Native platforms? What if we can detect abnormal behavior in the application, container runtime, & cluster environment as well? In this talk, we’ll present Falco, a CNCF Sandbox project for runtime security. We will show how Falco taps Linux system calls & the Kubernetes API to provide low level insight into application behavior, & how to write Falco rules to detect abnormal behavior. We’ll show how to collect & aggregate alerts using an EFK stack (Elasticsearch, Fluentd, Kibana). Finally we will show how Falco can trigger functions to stop abnormal behavior, & isolate the compromised Pod or Node for forensics. Attendees will leave with a better understanding of what problems runtime security solves, & how Falco can provide runtime security & incident response.
Host intrusion detection (HID) has been around for some time. What if we rethought the problems HID solves in the context of Cloud Native platforms? What if we can detect abnormal behavior in the application, container runtime, & cluster environment as well? In this talk, we’ll present Falco, a CNCF Sandbox project for runtime security. We will show how Falco taps Linux system calls & the Kubernetes API to provide low level insight into application behavior, & how to write Falco rules to detect abnormal behavior. We’ll show how to collect & aggregate alerts using an EFK stack (Elasticsearch, Fluentd, Kibana). Finally we will show how Falco can trigger functions to stop abnormal behavior, & isolate the compromised Pod or Node for forensics. Attendees will leave with a better understanding of what problems runtime security solves, & how Falco can provide runtime security & incident response.
Container Runtime Security with Falco
CNCF Webinar: Getting started with container runtime security using Falco
Webinar: Getting started with container runtime security using Falco
DevOps TO Meetup, Oct 2019 - Sam Gabrail: Container Runtime Security with Falco
Container Native Runtime Security with Falco by Lorenzo David
Container Runtime Security with Falco - Nestor Salceda
Orchestructure January 2020 - Falco - Container Native Runtime Security
Container Host Security - Monitor and Alert on Security Threats with Falco
Container Host Security - Getting Started with Falco
Kubernetes Security - Detect syscall, file malicious activities using Falco & Slack Alerts - 22
Falco - Open Source Docker Security - WTF my container just spawned a shell
Security Kill Chain Stages in a 100k+ Daily Container Environment with Falco - Natch Ruengsakulrach
Kubernetes runtime security with Falco
SCND24 - Container Security with Falco: A Quick Start Guide - Ayesha Kaleem
Falco - Kubernetes Cloud Native Runtime Security
Falco: The Secret Weapon for Runtime Security
Detecting Kubernetes Security Threats with Falco
K8SUG - Secure Your Containers with Falco by Yongkang Dec 2022 | Kubernetes, Container Security
Cloud Native Runtime Security with Falco and Falcosidekick ui
Deep Dive: Runtime Security With Falco in Userspace - Loris Degioanni, Sysdig
Exploring Kubernetes Runtime Security with Falco
Cloud Native Runtime Security with Falco (Ep 210)
Chris Kranz - Container Runtime Security with Sysdig.
Secure your Containers! @lorisdegio from Sysdig shows us how to use Falco to improve our security!
Комментарии