TGViewer
Kubesploit Kubesploit @kubesploit · 2.13K subscribers
Post #1514 285

Forwarded from KubeFM

Phil Estes, Principal Engineer at Amazon Web Services (AWS), explains why container security extends far beyond using minimal images.

He emphasizes examining the entire supply chain including dependencies, software composition analysis, and software bill of materials (SBOM).

He discusses the importance of image signing, package signing, and certificate management initiatives, including the OpenSSF's work providing maintainers with physical keys for proper package signing.

Watch the full interview: https://ku.bz/K4LmmL2NN

This interview is a reaction to Harsha Koushik's episode https://ku.bz/n_sJ04xMY
More from @kubesploit
  1. Sep 29, 2026This article explains how to design a production-grade MCP server for platform teams, with…
  2. Sep 28, 2026This article follows a secret from an external store into a pod through the Secrets Store…
  3. Sep 28, 2026Heading to KubeCon + CloudNativeCon North America? Join us the day before for our first in…
  4. Sep 25, 2026This tutorial builds a Docker image with a secret, then shows how it still sits in an earl…
  5. Sep 24, 2026This article explains how Vault piles up unexpired leases when pods keep re-authenticating…
  6. Sep 23, 2026This article asks what a container can block on its own when a dependency turns malicious,…
Threads Profile ViewerView any public Threads profile without an account.Open ThreadLook →Writing with AI? Make it sound human.Metric37 rewrites AI drafts so they read naturally. Free AI detector, 1,500 words free.Try Metric37 →