Loading…
In-person
24-26 March, 2026
Learn More and Register to Attend

The Sched app allows you to build your schedule but is not a substitute for your event registration. You must be registered for KubeCon + CloudNativeCon Europe 2026 to participate in the sessions. If you have not registered but would like to join us, please go to the event registration page to purchase a registration.

Please note: This schedule is automatically displayed in Central European Time (CET) (UTC +1). To see the schedule in your preferred timezone, please select from the drop-down menu to the right, above "Filter by Date." The schedule is subject to change and session seating is available on a first-come, first-served basis. 

Wednesday March 25, 2026 11:45 - 12:15 CET
Have you ever wondered why so many container escape vulnerabilities stem from vulnerabilities in the Linux kernel? This talk will take you beneath Kubernetes and into the Linux kernel to explore how the underlying kernel impacts your containers. We will look at the history of containers to see how they evolved from Linux containers to today’s cloud native world. We will then dive into Linux features still at work in containers today, with a demo showing these features at work in an unprivileged container. We’ll start with cgroups and namespaces: what do these actually do, and what’s in and out of scope for their protection? We’ll then move on to looking at devices, system calls, and processes in the container to explore what you can see, what you can change, and how OCI runtimes masks work. You’ll walk away with a clearer understanding of Kubernetes security rooted in an understanding of the underlying Linux kernel and how you can access it from within a container.
Speakers
avatar for Marina Moore

Marina Moore

Research Scientist, Edera
Marina Moore is a Research Scientist at Edera. She is a maintainer of The Update Framework (TUF), a CNCF graduated project that provides secure software update and delivery. She is also a chair of CNCF's TAG Security where she contributes to security assessments and whitepapers, as... Read More →
Wednesday March 25, 2026 11:45 - 12:15 CET
Elicium 2
  Security

Sign up or log in to save this to your schedule, view media, leave feedback and see who's attending!

Share Modal

Share this link via

Or copy link