Don't just detect threats. Take pro-active action!

By Chandu P

Elevator Pitch

Protect your Microservice Applications running on Kubernetes from malicious attacks by take pro-active measures & pro-active auto threat detection and elimination. As a Community, let’s save our favorite K8s environment from Ransomware & malware!

Description

  • zero trust everything running your K8s workloads
  • Auto register only known activities/processes related to your application(s) during development
  • check integrity of codebase
  • destroy infected pods (Of course, new pods get created automatically)
  • alert security & ops teams on malicious activities through alert manager
  • Embracing the Shift Left concept; Shift-Left threat detection & get every protection done automatically in Development environment. When you deploy your apps to QA & Prod Threat elimination is automatic.
  • activities detected using Falco’s kernel module (eBPF support for modern Kernels coming soon).
  • Share threats & solutions identified with the community to fight against ransomware and malicious activities in our favorite K8s ecosystem

Notes

This talk is to present the opensource security tool my friend & I developed which falls under DevSecOps area.

  • https://github.com/kube-tarian/tarian