WEBVTT

00:00:00.240 --> 00:00:07.360
Welcome to Pluralsight and this cybersecurity tools

00:00:07.360 --> 00:00:08.830
course featuring kube‑hunter,

00:00:08.840 --> 00:00:11.850
the open source container infrastructure analysis tool

00:00:11.850 --> 00:00:14.740
developed and maintained by Aqua Security.

00:00:14.750 --> 00:00:17.140
As more applications move into Kubernetes,

00:00:17.150 --> 00:00:20.760
it's pivotal that you are able to hunt for Kubernetes threats.

00:00:20.840 --> 00:00:25.650
In this course, you will execute kube‑hunter on a vulnerable Kubernetes cluster.

00:00:25.660 --> 00:00:29.640
You will then use the kube‑hunter findings to investigate an attack that

00:00:29.640 --> 00:00:32.560
chains together multiple Kubernetes vulnerabilities.

00:00:32.940 --> 00:00:36.760
You will investigate remote code execution and expose metadata

00:00:36.760 --> 00:00:39.530
endpoint and even container image tampering.

00:00:39.540 --> 00:00:40.450
But wait,

00:00:40.460 --> 00:00:44.270
there's more. You will also learn how to prevent attacks by

00:00:44.270 --> 00:00:48.000
using Pod security policies. While it would be helpful to have

00:00:48.000 --> 00:00:50.000
a basic understanding of Kubernetes,

00:00:50.010 --> 00:00:54.460
I've got you. I'll explain Kubernetes basics as we move throughout the course.

00:00:55.140 --> 00:00:59.230
If you're a blue teamer looking to defend against Kubernetes attacks or a

00:00:59.230 --> 00:01:02.110
red teamer looking to exploit modern defense patterns,

00:01:02.120 --> 00:01:05.220
you are in the right place, and all you need to do

00:01:05.230 --> 00:01:07.010
is to continue into this course.

00:01:07.020 --> 00:01:07.950
I've got you!
