Session

Detecting unexpected behavior and intrusions with Falco + Atomic Red Team

Tools like Falco - the open source container, cloud, and Kubernetes threat detection engine - aren’t immune to security and stability issues. In fact, vulnerabilities in security software can be some of the most devastating of all.

One of the most effective steps in securing software is ensuring all our security measures work as expected. The goal is to identify corner cases that could trigger potentially dangerous behavior and patch them when necessary.

In this workshop, Miguel and Vicente, will show how to validate Falco’s rules, using another open source project, Atomic Red Team As a user, you’ll learn the inherent risks of running security software in your cluster. If you’re a security expert, this talk will demonstrate the fully open source process and you’ll learn to deploy and test your favorite tool.

Miguel Hernández

Staff Threat Researcher Engineer - Sysdig

Zaragoza, Spain

Actions

Please note that Sessionize is not responsible for the accuracy or validity of the data provided by speakers. If you suspect this profile to be fake or spam, please let us know.

Jump to top