The Path Less Traveled: Abusing Kubernetes Defaults
Kubernetes is a container orchestration framework that is increasingly widely used in enterprise and elsewhere. While the industry is starting to pay some attention to Kubernetes security, there are many attack paths that aren’t well-documented, and are rarely discussed. This lack of information can make your clusters vulnerable. In this live demonstration-filled talk, we are going to walk through the Kubernetes control plane before using sigs.k8s.io/kind to show some of the attack surface exposed by a default configuration of Kubernetes. There will be multiple exploits involving various moving parts, including cluster takeovers and host escapes. We’ll show you mitigations, and then show you how to get around those. By Ian Coldwater and Duffie Cooley

Kubernetes Zero to Hero: The Complete Beginner’s Guide (2025 Edition)

Ghidra - Journey from Classified NSA Tool to Open Source

Attacking AI - Jason Haddix - NDC Security 2026

A Compendium of Container Escapes

Effective RBAC - Jordan Liggitt, Red Hat

Command and KubeCTL: Real-World Kubernetes Security for Pentesters - Mark Manning (Shmoocon 2020)

Kubernetes Hacking: From Weak Applications to Cluster Control

DEF CON 33 - Kill List: Hacking an Assassination Site on the Dark Web - Carl Miller, Chris Monteiro

Billionaire's WARNING: I'm SELLING. The Crash Is Already Here!

Practical Approach to Automate the Discovery & Eradication of Open-Source Software Vulnerabilities

DEF CON 32 - Inside the FBI’s Secret Encrypted Phone Company ‘Anom’ - Joseph Cox

Broadpwn: Remotely Compromising Android and iOS via a Bug in Broadcom's Wi-Fi Chipsets
![Kubernetes Crash Course for Absolute Beginners [NEW]](https://i.ytimg.com/vi/s_o8dwzRlu4/hq720.jpg?sqp=-oaymwEbCNAFEJQDSFryq4qpAw0IARUAAIhCGAG4AvcY&rs=AOn4CLBScOBgrOc0PhRcUQ1ulIZBedm3CQ&usqp=CCc)
Kubernetes Crash Course for Absolute Beginners [NEW]

Zig 2026: No-AI Policy, $670K Foundation, Left GitHub & Why Zig Isn’t 1.0 - Andrew Kelley Explains
![Life of a Packet [I] - Michael Rubin, Google](https://i.ytimg.com/vi/0Omvgd7Hg1I/hq720.jpg?sqp=-oaymwEbCNAFEJQDSFryq4qpAw0IARUAAIhCGAG4AvcY&rs=AOn4CLCO8oeJ8XNg5Gjhfp8EyiogKV0lAw&usqp=CCc)
Life of a Packet [I] - Michael Rubin, Google

LISA19 - Deep Dive into Kubernetes Internals for Builders and Operators

Cybersecurity Architecture: Networks

RL for Agents Workshop - Deep Dive on Training Agents with RL and Open Source
![Kubernetes Tutorial for Beginners [FULL COURSE in 4 Hours]](https://i.ytimg.com/vi/X48VuDVv0do/hq720.jpg?sqp=-oaymwEbCNAFEJQDSFryq4qpAw0IARUAAIhCGAG4AvcY&rs=AOn4CLDP3EZ0MN2MTrZ5qwVhyDWKfZEiUQ&usqp=CCc)
Kubernetes Tutorial for Beginners [FULL COURSE in 4 Hours]

