Tweetovi
- Tweetovi, trenutna stranica.
- Tweetovi i odgovori
- Medijski sadržaj
Blokirali ste korisnika/cu @sublimino
Jeste li sigurni da želite vidjeti te tweetove? Time nećete deblokirati korisnika/cu @sublimino
-
Prikvačeni tweet
Slides from "How to Train your Red Team (for Cloud Native)"




-- hack, harden, and learn Kubernetes security with https://kubesim.io and https://github.com/kubernetes-simulator/simulator …
Slides: https://drive.google.com/open?id=1cV5BJBZPZMjsvJExY-nlPDsdgwSsZXGI …
Attack Trees: https://github.com/cncf/financial-user-group/tree/master/projects/k8s-threat-model …
Thanks @AquaSecTeam and Kubecon!pic.twitter.com/N6bAO8nR6n
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Companion slides to the live demo marathon of "How (Not) to Containerise Securely". Dirtycow, /proc/self/exe, API server, Billion Laughs,
@IstioMesh sidecar assault - and SecOps test patterns and remediations! Thanks@fosdem,@stgraber and@brau_ner
https://drive.google.com/a/control-plane.io/file/d/1ZWqSoCq6rw514I0ZAcs4cU-5-OJVMfO3/view?usp=sharing …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Andrew Martin proslijedio/la je Tweet
Watching
@sublimino hacking the hell out of Kubernetes was so much fun#FOSDEMpic.twitter.com/AAfyXxmuwZ
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Andrew Martin proslijedio/la je Tweet
So excited for
@fosdem, come and see me pop shells in containers, k8s, and@IstioMesh in the containers devroom (tomorrow 3pm, tons of awesome talks all day), or at the K8S meetup tonight for some cloud native red teaming &@krisnova &@estesp!



https://fosdem.org/2020/schedule/track/containers/ …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
-
If someone tonight would now like To contribute, hack, or to fight Against red or blue teams, Fulfil kube-hacking dreams -- Then please click on the link on my right

https://drive.google.com/open?id=1PgtVF37zflmQPdyAMD5RAsvTs35J8eks …
Thanks @krisnova at@hsbxl for demanding a live limerick, my favoured form and meterPrikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
So excited for
@fosdem, come and see me pop shells in containers, k8s, and@IstioMesh in the containers devroom (tomorrow 3pm, tons of awesome talks all day), or at the K8S meetup tonight for some cloud native red teaming &@krisnova &@estesp!



https://fosdem.org/2020/schedule/track/containers/ …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Andrew Martin proslijedio/la je Tweet
Don't let
#KubeCon rejection get you down. Submit your talk to#REJEKTS2020! CFP opens TODAY and will be open for a week. Amsterdam // March 28-29, 2020 Don't miss your chance to be considered -> https://buff.ly/37wHI0W pic.twitter.com/6YV2ezXkYt
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Andrew Martin proslijedio/la je Tweet
Intent-to-Remove thread for TLS1.0/TLS1.1 in Chrome. "As of 1/1/20, we still saw 0.3% of main frame page loads using TLS 1.0 or 1.1. This is down significantly from 0.68% in Jan2019."https://groups.google.com/a/chromium.org/forum/#!topic/blink-dev/q3MkzsLYeJE …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Andrew Martin proslijedio/la je Tweet
Run encrypted container images on your
@kubernetesio cluster! In this blogpost, we talk about compliance, key association, and try it out a cluster with#crio. This is a sneak peak into what we have planned for KubeCon + CloudNativeCon EU this March!https://medium.com/@lumjjb/how-encrypted-images-brings-about-compliance-in-kubernetes-via-cri-o-6ab58fad6124 …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Andrew Martin proslijedio/la je Tweet
Glad to announce the next speaker for our pre-
@fosdem@kubernetesio-meetup a:@sublimino who will give a talk called: "How to Train Your Red Team (for Cloud-Native)". RSVP is full but put yourself on the waitlist! cc:@CloudNativeFdn#Kubernetes#Meetup https://buff.ly/35RAjaJ pic.twitter.com/7Wx125D38M
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Andrew Martin proslijedio/la je Tweet
Reminder that you can still submit to the Cloud Native Security Day. This is a KubeCon EU-colocated event that we, the
@CloudNativeFdn SIG Security, are organizing. I’m on the PC and looking forward to review *your* submission! https://events.linuxfoundation.org/cloud-native-security-day/ …#cloudnative#securitypic.twitter.com/WWjUYFTZJx
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Nice see PoCs for CurveBall out so quickly. Always be patching! https://github.com/ollypwn/CVE-2020-0601 … https://github.com/kudelskisecurity/chainoffools …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Andrew Martin proslijedio/la je Tweet
Harden #Git for better GitOps#security
This whitepaper will give you everything you need to mitigate the most common malicious attacks: http://bit.ly/2W1X5vM pic.twitter.com/IenXVRLn2l
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Andrew Martin proslijedio/la je Tweet
Running on GKE?
@controlplaneio and the@GCPcloud security team have authored new@CISecurity Benchmarks covering GKE and its integration with key GCP security components


Thanks to @orthogonalrb and@wakewarduk for all their hard work!https://cloud.google.com/blog/products/containers-kubernetes/gke-cis-benchmarks-deliver-security-best-practices …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Andrew Martin proslijedio/la je Tweet
Big day for Time Namespace: the kernel part was accepted and merged into tip: timers/core! Celebrate responsibly :-)
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Come and talk DevSecOpsy with
@abdullahgarcia, Chris Rutter, and I at@DevSecOps_LG tomorrow evening!https://www.meetup.com/DevSecOps-London-Gathering/events/267204836 …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Andrew Martin proslijedio/la je Tweet
Want to get remote access to your private network, cluster and services? Including SSH? Apply for a free trial of inlets-pro, or for HTTP try
@inletsdev OSS https://github.com/inlets/inlets-pro-pkg …pic.twitter.com/mRgoyaJDNF
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Andrew Martin proslijedio/la je Tweet
A big recommendation if you want to work on
#Kubernetes development tools full-time: https://grnh.se/f2af0c9f1 -@weaveworks is searching for a#Golang backend developer with Kubernetes skills
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Andrew Martin proslijedio/la je Tweet
Hell to the yeah. GitHub scans code commits for AWS keys, notifies AWS, and AWS quickly quarantines those keys.

https://twitter.com/mschoening/status/1213121064210841600 …Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Andrew Martin proslijedio/la je Tweet
So, earlier today, Google published a whitepaper on
BeyondProd
, about how Google does cloud-native security. Here’s a summary thread /1Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
Čini se da učitavanje traje već neko vrijeme.
Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.
