World Congress 2026 Europe

From Build to Breach: Hacking Kubernetes Through the Supply Chain

July 10, 2026 09:00 – 09:30 · 30 min Stage 8 - powered by Red Hat

What this session covers

The next generation of Kubernetes breaches won’t start in your cluster — they’ll start in your build pipeline. In this session, we’ll follow a realistic attack chain that begins with a compromised dependency and ends with a live DNS-based exfiltration inside a Kubernetes cluster. Step by step, through live demos, we’ll see how a single poisoned package can slip through CI/CD, sneak into an image registry, and quietly abuse CoreDNS to leak secrets. Then we’ll flip the script and show how to stop it using open-source, CNCF-hosted tools like Kyverno, Sigstore, and Falco. You’ll leave with a clear mental model of how supply-chain weaknesses evolve into cluster compromises — and a practical checklist of defenses you can apply today.

Related talks at this congress

Open session

World Congress 2026 Europe

July 10, 2026 · 11:00–11:30

Stage 8 - powered by Red Hat

Beyond SBOMs: The Future of Container Supply Chain Security

Mohammad-Ali A'râbi

Senior Software Engineer at JobRad

Mohammad-Ali A'râbi
Open session

World Congress 2026 Europe

July 9, 2026 · 10:30–12:30

Room M3 (18 Seats)

Defending the Modern Supply Chain: Hands-On Vulnerability Remediation

Boy Baukema, Patrick Feige

Boy Baukema
Patrick Feige
Open session

World Congress 2026 Europe

July 8, 2026 · 11:00–13:00

Room M3 (18 Seats)

Teaching Kubernetes Security in your Cluster

Thomas Fricke

Cloud Security Architect

Thomas Fricke
Open session

World Congress 2026 Europe

July 9, 2026 · 10:30–12:30

Room R2 (30 Seats)

Building a Better Tomorrow: Tips and Tricks for Docker Builds

Daniel Bodky

Senior Developer Advocate at NETWAYS

Daniel Bodky
All sessions at this congress