SlideShare a Scribd company logo
Hijack a Kubernetes Cluster - a Walkthrough
Continuous Lifecycle & Container Conf 2021
Nico Meisenzahl
• Senior Cloud & DevOps Consultant at white duck
• Microsoft MVP, GitLab Hero
• Cloud Native, Kubernetes & Azure
© white duck GmbH 2021
Phone: +49 8031 230159 0
Email: nico.meisenzahl@whiteduck.de
Twitter: @nmeisenzahl
LinkedIn: https://www.linkedin.com/in/nicomeisenzahl
Blog: https://meisenzahl.org
About this talk
• this is not an in-depth security talk
• it should make you aware of common attack vectors and
how to prevent them
• you will see demos on how to hijack a cluster
• you will learn how to prevent those with common best practices
• one more slide, then we will start hijacking (slideless)
• https://github.com/nmeisenzahl/hijack-kubernetes
© white duck GmbH 2021
What we will do
© white duck GmbH 2021
Questions?
• Slides: https://www.slideshare.net/nmeisenzahl
• Demo: https://github.com/nmeisenzahl/hijack-kubernetes
© white duck GmbH 2021
Phone: +49 8031 230159 0
Email: nico.meisenzahl@whiteduck.de
Twitter: @nmeisenzahl
LinkedIn: https://www.linkedin.com/in/nicomeisenzahl
Blog: https://meisenzahl.org

More Related Content

PDF
azdevcom - Hijack a Kubernetes Cluster
PDF
Die Evolution von Container Image Builds
PDF
Hijack a Kubernetes Cluster - a Walkthrough
PDF
Azure Saturday Hamburg: Containerize Your .NET Microservice - the Right Way!
PDF
Continuous Lifecycle: Enhance Your Compliance and Governance With Policy-Base...
PDF
Azure Meetup Hamburg: Production-Ready Terraform Deployments on Azure
PDF
Azure Rosenheim Meetup: Azure Service Operator
PDF
GitHub Actions 101
azdevcom - Hijack a Kubernetes Cluster
Die Evolution von Container Image Builds
Hijack a Kubernetes Cluster - a Walkthrough
Azure Saturday Hamburg: Containerize Your .NET Microservice - the Right Way!
Continuous Lifecycle: Enhance Your Compliance and Governance With Policy-Base...
Azure Meetup Hamburg: Production-Ready Terraform Deployments on Azure
Azure Rosenheim Meetup: Azure Service Operator
GitHub Actions 101

What's hot (20)

PDF
GitLab Commit: Your Attackers Won't Be Happy! How GitLab Can Help You Secure ...
PDF
Policy & Governance für Kubernetes
PDF
GitLab Commit DevOps: How GitLab Can Save your Kubernetes environment from Be...
PDF
Cloud Native Day: Cloud-native Anwendungsentwicklung im Jahr 2021
PDF
DevOpsCon Berlin: Helm vs Operators – Do I Need to Decide?
PDF
Azure Zürich User Group: Azure Kubernetes Service – more than just a managed ...
PDF
Virtual GitLab Meetup: How Containerized Pipelines and Kubernetes Can Boost Y...
PDF
Enhance Your Kubernetes CI/CD Pipelines With GitLab & Open Source
PDF
Hijack a Kubernetes Cluster - a Walkthrough
PDF
GitLab Remote Meetup: Enhance Your Kubernetes CI/CD Pipelines with GitLab & ...
PDF
The Future of Workflow Automation Is Now - Hassle-Free ARM Template Deploymen...
PDF
GitLab Commit: Enhance your Compliance with Policy-Based CI/CD
PDF
Was ist ein Service Mesh und wie funktioniert es?
PDF
Global Azure Bootcamp: Container, Docker & Kubernetes Basics
PPTX
FestiveTechCalendar2021 - Have Yourself An​ Azure Container Registry
PDF
Virtual Azure Community Day: Azure Kubernetes Service Basics
PDF
Docker Rosenheim Meetup: Policy & Governance for Kubernetes
PDF
DevOps Gathering - How Containerized Pipelines Can Boost Your CI/CD
PPTX
Event sourcing your React-Redux applications
PDF
DevOpsCon London: How containerized Pipelines can boost your CI/CD
GitLab Commit: Your Attackers Won't Be Happy! How GitLab Can Help You Secure ...
Policy & Governance für Kubernetes
GitLab Commit DevOps: How GitLab Can Save your Kubernetes environment from Be...
Cloud Native Day: Cloud-native Anwendungsentwicklung im Jahr 2021
DevOpsCon Berlin: Helm vs Operators – Do I Need to Decide?
Azure Zürich User Group: Azure Kubernetes Service – more than just a managed ...
Virtual GitLab Meetup: How Containerized Pipelines and Kubernetes Can Boost Y...
Enhance Your Kubernetes CI/CD Pipelines With GitLab & Open Source
Hijack a Kubernetes Cluster - a Walkthrough
GitLab Remote Meetup: Enhance Your Kubernetes CI/CD Pipelines with GitLab & ...
The Future of Workflow Automation Is Now - Hassle-Free ARM Template Deploymen...
GitLab Commit: Enhance your Compliance with Policy-Based CI/CD
Was ist ein Service Mesh und wie funktioniert es?
Global Azure Bootcamp: Container, Docker & Kubernetes Basics
FestiveTechCalendar2021 - Have Yourself An​ Azure Container Registry
Virtual Azure Community Day: Azure Kubernetes Service Basics
Docker Rosenheim Meetup: Policy & Governance for Kubernetes
DevOps Gathering - How Containerized Pipelines Can Boost Your CI/CD
Event sourcing your React-Redux applications
DevOpsCon London: How containerized Pipelines can boost your CI/CD
Ad

Similar to Continuous Lifecycle: Hijack Kubernetes (20)

PDF
KCD Munich 2022: Hijack a Kubernetes Cluster - a Walkthrough
PDF
Container Day Security: How to Prevent Your Kubernetes Cluster From Being Hacked
PDF
How to Prevent Your Kubernetes Cluster From Being Hacked by Nico Meisenzahl
PDF
How to Prevent Your Kubernetes Cluster From Being Hacked by Nico Meisenzahl
PDF
Microsoft DevOps Forum 2021 – DevOps & Security
PPTX
Hijack a Kubernetes Cluster - a Walkthrough
PDF
Container Days: Hijack a Kubernetes Cluster - a Walkthrough
PDF
ContainerConf 2022: Hijack Kubernetes
PDF
Cloud Study Jam - Kubernetes 101
PDF
Cloud Love Conference: Kubernetes is awesome, but...
PDF
KCD Munich 2022: How to Prevent Your Kubernetes Cluster From Being Hacked
PDF
ContainerConf 2022: Kubernetes is awesome - but...
PDF
GitLab Remote Meetup: Enhance Your Kubernetes CI/CD Pipelines with GitLab & O...
PDF
How to Prevent Your Kubernetes Cluster From Being Hacked
PDF
GitLab London Meetup: How Containerized Pipelines and Kubernetes Can Boost Yo...
PDF
Azure Service Operator - Provision Your Resources in a Cloud-Native Way
PDF
Effiziente CI/CD-Pipelines – mit den richtigen Tools klappt das
PDF
Containerized Build & Deployment Pipelines
PDF
Mitigate potential compliance risks
PPTX
Kubernetes Security
KCD Munich 2022: Hijack a Kubernetes Cluster - a Walkthrough
Container Day Security: How to Prevent Your Kubernetes Cluster From Being Hacked
How to Prevent Your Kubernetes Cluster From Being Hacked by Nico Meisenzahl
How to Prevent Your Kubernetes Cluster From Being Hacked by Nico Meisenzahl
Microsoft DevOps Forum 2021 – DevOps & Security
Hijack a Kubernetes Cluster - a Walkthrough
Container Days: Hijack a Kubernetes Cluster - a Walkthrough
ContainerConf 2022: Hijack Kubernetes
Cloud Study Jam - Kubernetes 101
Cloud Love Conference: Kubernetes is awesome, but...
KCD Munich 2022: How to Prevent Your Kubernetes Cluster From Being Hacked
ContainerConf 2022: Kubernetes is awesome - but...
GitLab Remote Meetup: Enhance Your Kubernetes CI/CD Pipelines with GitLab & O...
How to Prevent Your Kubernetes Cluster From Being Hacked
GitLab London Meetup: How Containerized Pipelines and Kubernetes Can Boost Yo...
Azure Service Operator - Provision Your Resources in a Cloud-Native Way
Effiziente CI/CD-Pipelines – mit den richtigen Tools klappt das
Containerized Build & Deployment Pipelines
Mitigate potential compliance risks
Kubernetes Security
Ad

Recently uploaded (20)

PPT
Teaching material agriculture food technology
PPTX
PA Analog/Digital System: The Backbone of Modern Surveillance and Communication
PDF
Peak of Data & AI Encore- AI for Metadata and Smarter Workflows
PDF
NewMind AI Weekly Chronicles - August'25 Week I
PDF
Reach Out and Touch Someone: Haptics and Empathic Computing
PDF
Network Security Unit 5.pdf for BCA BBA.
PPTX
Detection-First SIEM: Rule Types, Dashboards, and Threat-Informed Strategy
PDF
Chapter 3 Spatial Domain Image Processing.pdf
DOCX
The AUB Centre for AI in Media Proposal.docx
PDF
TokAI - TikTok AI Agent : The First AI Application That Analyzes 10,000+ Vira...
PDF
Modernizing your data center with Dell and AMD
PPTX
20250228 LYD VKU AI Blended-Learning.pptx
PDF
Dropbox Q2 2025 Financial Results & Investor Presentation
PDF
Unlocking AI with Model Context Protocol (MCP)
PDF
Mobile App Security Testing_ A Comprehensive Guide.pdf
PPTX
VMware vSphere Foundation How to Sell Presentation-Ver1.4-2-14-2024.pptx
PPTX
A Presentation on Artificial Intelligence
PDF
Spectral efficient network and resource selection model in 5G networks
PDF
Empathic Computing: Creating Shared Understanding
PDF
KodekX | Application Modernization Development
Teaching material agriculture food technology
PA Analog/Digital System: The Backbone of Modern Surveillance and Communication
Peak of Data & AI Encore- AI for Metadata and Smarter Workflows
NewMind AI Weekly Chronicles - August'25 Week I
Reach Out and Touch Someone: Haptics and Empathic Computing
Network Security Unit 5.pdf for BCA BBA.
Detection-First SIEM: Rule Types, Dashboards, and Threat-Informed Strategy
Chapter 3 Spatial Domain Image Processing.pdf
The AUB Centre for AI in Media Proposal.docx
TokAI - TikTok AI Agent : The First AI Application That Analyzes 10,000+ Vira...
Modernizing your data center with Dell and AMD
20250228 LYD VKU AI Blended-Learning.pptx
Dropbox Q2 2025 Financial Results & Investor Presentation
Unlocking AI with Model Context Protocol (MCP)
Mobile App Security Testing_ A Comprehensive Guide.pdf
VMware vSphere Foundation How to Sell Presentation-Ver1.4-2-14-2024.pptx
A Presentation on Artificial Intelligence
Spectral efficient network and resource selection model in 5G networks
Empathic Computing: Creating Shared Understanding
KodekX | Application Modernization Development

Continuous Lifecycle: Hijack Kubernetes

  • 1. Hijack a Kubernetes Cluster - a Walkthrough Continuous Lifecycle & Container Conf 2021
  • 2. Nico Meisenzahl • Senior Cloud & DevOps Consultant at white duck • Microsoft MVP, GitLab Hero • Cloud Native, Kubernetes & Azure © white duck GmbH 2021 Phone: +49 8031 230159 0 Email: nico.meisenzahl@whiteduck.de Twitter: @nmeisenzahl LinkedIn: https://www.linkedin.com/in/nicomeisenzahl Blog: https://meisenzahl.org
  • 3. About this talk • this is not an in-depth security talk • it should make you aware of common attack vectors and how to prevent them • you will see demos on how to hijack a cluster • you will learn how to prevent those with common best practices • one more slide, then we will start hijacking (slideless) • https://github.com/nmeisenzahl/hijack-kubernetes © white duck GmbH 2021
  • 4. What we will do © white duck GmbH 2021
  • 5. Questions? • Slides: https://www.slideshare.net/nmeisenzahl • Demo: https://github.com/nmeisenzahl/hijack-kubernetes © white duck GmbH 2021 Phone: +49 8031 230159 0 Email: nico.meisenzahl@whiteduck.de Twitter: @nmeisenzahl LinkedIn: https://www.linkedin.com/in/nicomeisenzahl Blog: https://meisenzahl.org