What We've Learned from Scanning 10K+ Kubernetes Clusters - Gal Gibli
About this talk
This talk discusses the alarming prevalence of misconfigurations, unpatched vulnerabilities, and overly-privileged users in Kubernetes environments, based on insights from over 10,000 unique Kubernetes cluster scans using the open source tool Kubescape. The speaker highlights the most frequent misconfigurations across various deployments, referencing frameworks such as NSA-CISA and MITRE ATT&CK®, while addressing known software vulnerabilities and role-based access control violations found in early CI/CD pipeline stages. Attendees will learn how to calculate their own risk score and manage ongoing risks in alignment with evolving security trends. The session also offers valuable insights into common failure points in Kubernetes deployments and concludes with actionable steps to enhance cloud native security posture.