Our threat research team uncovered a massive cryptojacking operation targeting free GitHub and Heroku accounts. Dubbed "freejacking," PURPLEURCHIN is abusing compute allocated for free trial accounts on CI/CD platforms.
Click to see what's going on and why you should care!
Happening now: Sysdig security experts & #Falco contributors @darryk10 & @loresuso are teaming up at #CloudNative SecurityCon to explain how to use #CNCF container runtime security tool @falco_org to detect & monitor container escaping techniques based on capabilities. @KubeCon_
Are you attending @KubeCon_ NA '22? The Falco community is presenting, "The eye of Falco: you can escape but not hide." Join @loresuso & @darryk10 at #CNSCON Oct. 25 to learn more. Register here: https://t.co/I1UPRL0MWr #opensource
Interested in the #OSS project @falco_org?
See @lorisdegio's keynote on detecting GitHub security issues with Falco at #CNSCON on 10/25! Also catch @darryk10 & @loresuso's session on using Falco to detect & monitor container escaping techniques: https://t.co/vtMJTvBJAy
Strengthen your threat detection!
Aug 11 (10AM) at #BHUSA (@BlackHatEvents) @pellibert1 & @darryk10 are demoing the process of creating open source @falco_org plugins.
Join to learn the new Falco plugin approach and how to use them when there's a breach. https://t.co/nWZ6sRNMq6
Learn how to leverage Falco in real breaches!
On Aug 11 (10AM) at #BHUSA (@BlackHatEvents) @pellibert1 & @darryk10 will be demoing the process of creating open source @falco_org plugins to extend the Falco detection engine to new event sources. https://t.co/H4jWh0AP2g
This August at #BlackHatUSA, @pellibert1 and @darryk10 will be demoing the process of creating open source @falco_org plugins for any source. Simplify your life, learn how to create a consistent threat detection language across multiple clouds. https://t.co/yminvZWzBA
Capabilities provide a way to limit the level of access a container. However, they are often misconfigured, granting excessive privileges to processes and threads
Checkout my new article on how to detect containers' escape capabilities with #Falco
https://t.co/LolPFnmbf5
Security research @darryk10 outlines 3 common techniques bad actors use to gain high privileges inside cloud environments. Starting with credentials found online or tricking users in a phishing attack, they then proceed within the account. Learn so you can reduce your own risk!
We’re proud to announce we raised $350M at a $2.5B valuation! 🚀
We want to thank our customers and partners for trusting us to secure their cloud and container environments! This milestone is a reflection of the confidence our customers have in us. https://t.co/Ye5eyNGRqD
👀 Pod Security graduated to beta in Kubernetes v1.23 so @JimmAngel and I wrote a blog to help teach you all about this fantastic workload security enhancement. Check it out https://t.co/5oaSQdlpei
⚔THREAT NEWS!⚔ The Sysdig Threat Research Team detected an attack attributed to the TeamTNT. 🚨Once access is gained, the malware 👾 steals credentials using EC2 instance metadata!🚨 Learn how they exploited a ✏WordPress Pod deployed on #K8s cluster: https://t.co/tVD9bkJkcJ