filmov
tv
Securing CI/CD Systems Through eBPF - Alex Ilgayev, Cycode
Показать описание
Securing CI/CD Systems Through eBPF - Alex Ilgayev, Cycode
The challenging nature of securing CI/CD pipelines, mainly because of inadequate security tooling and low observability of the underlying system, would make using the eBPF technology inevitable. This technical talk aims to demonstrate how eBPF can be used to secure CI/CD pipelines, whether they run on bare-metal, virtual machines, or ephemeral environments. By combining dedicated research, an innovative approach, and proper tooling, we can inject an eBPF-based implant into every build environment quickly and easily, to inspect, identify, and protect against malicious activity. We will demonstrate the following use-cases: - Visibility over the entire build process - created processes, contacted IP addresses/domains, modified files, traffic inspection, etc. - Ensure code and artifact integrity. - Denying build process tampering. - Maintain a tight network policy to prevent processes from exfiltrating sensitive secrets, such as tokens and environment variables. We will demonstrate how we can stop the deadliest software supply chain attacks while supporting all major CI/CD platforms, such as Github Actions, Jenkins, GitlabCI, and CircleCI.
Securing CI/CD Systems Through eBPF - Alex Ilgayev, Cycode
Securing CI/CD Runners Through eBPF Agent
Securing CI/CD runners through eBPF agent | Mert Coskuner & Cenk Kalpakoglu | Conf42 CN 2024
Securing CI/CD Runners Through eBPF Agent - Mert Coskuner, Yahoo & Cenk Kalpakoglu, Kondukto
Reproducing Production Issues in your CI Pipeline Using eBPF - Matthew LeRay & Omid Azizi
Strengthen Security with an eBPF-based Kubernetes CNI - Shruti Chaturvedi, MeetKlara
Monitoring Containerized Application Environments with eBPF
Hands-on guide to Runtime Security for CI/CD Pipelines with StepSecurity
eBPF - Superpowers for Networking, Observability & Security - Liz Rice - Swiss Cloud Native Day ...
Keynote: eBPF - Everything You Need to Know in 5 Minutes - Thomas Graf, CTO, Isovalent
Runtime Security using eBPF and OPA - Itay Shakury, Open Source at Aqua Security
Securing CI/CD: Complexity & Inspiration from Runtime Security - Abhimanyu Dhamija, KoalaLab
Cilium & eBPF - Cloud-Native Networking, Security & Observability
Triaging Real Time Security Threats with eBPF Powered Observability • Daniel Kim • GOTO 2022
Kubernetes Network Policy Logging with eBPF - Zang Li, Google - Full Keynote
Runtime Reachability: Prioritizing Vulnerabilities with eBPF & Continuous Profiling
How is Semaphore different from other CI/CD tools?
Boosting Cloud Native Security With eBPF
eBPF Superpowers For Security
Github Actions Security Landscape with Alex Ilgayev
Hardening Your CI/CD Pipeline with GitOps and Continuous Security
Securing Kubernetes Clusters with DevSecOps and GitLab - Sam White, GitLab - Full Lightning
DevSecOps Decoded | Technically Speaking
Keep Calm and Secure Your CI/CD Pipeline
Комментарии