Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

YouTube

Build to Hack, Hack to Build

Security BSides London via YouTube

Overview

Save Big on Coursera Plus. 7,000+ courses at $160 off. Limited Time Only!
Explore container exploitation and security in this 25-minute conference talk from Security BSides London. Learn about the development of BOtB, a container exploitation tool designed to identify and autopwn common vulnerabilities in Docker and LXC. Discover how BOtB can be integrated into modern SDLC environments using CI/CD technologies to detect, exploit, and remediate container vulnerabilities before production releases. Gain insights into the technical details of container vulnerabilities exploitable by BOtB, and understand how both pentesters and engineers can leverage this tool to enhance container security. Delve into topics such as BreakAfterBox, Dakka, Hydroponic Sock, CI environments, environment variables, OS environments, metadata services, and binary hijacking.

Syllabus

Introduction
Problems
Tools
BreakAfterBox
Dakka
Hydroponic Sock
Issues
Show Controls
Return Codes
CI Environment
Environment variables
OS environment
Analyze
Test
Environment
Metadata Services
Binary Hijacking

Taught by

Security BSides London

Reviews

Start your review of Build to Hack, Hack to Build

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.