TGViewer
Kubesploit Kubesploit @kubesploit · 2.13K subscribers
Post #1519 400

Forwarded from KubeFM

Harsha Koushik, a Security Researcher and Technical Product Manager at Palo Alto Networks, discusses the nuanced decision of using empty scratch containers.

He emphasizes that while experienced developers might manage fine with these minimalistic containers, less experienced developers could face significant issues due to missing essential libraries and configurations.

Koushik points out that missing elements like C libraries, /etc/passwd files, and timezone defaults can lead to failures in logging, cron jobs, and other system functions.

Watch the full episode: https://ku.bz/n_sJ04xMY
More from @kubesploit
  1. Sep 29, 2026This article explains how to design a production-grade MCP server for platform teams, with…
  2. Sep 28, 2026This article follows a secret from an external store into a pod through the Secrets Store…
  3. Sep 28, 2026Heading to KubeCon + CloudNativeCon North America? Join us the day before for our first in…
  4. Sep 25, 2026This tutorial builds a Docker image with a secret, then shows how it still sits in an earl…
  5. Sep 24, 2026This article explains how Vault piles up unexpired leases when pods keep re-authenticating…
  6. Sep 23, 2026This article asks what a container can block on its own when a dependency turns malicious,…
Threads Profile ViewerView any public Threads profile without an account.Open ThreadLook →Writing with AI? Make it sound human.Metric37 rewrites AI drafts so they read naturally. Free AI detector, 1,500 words free.Try Metric37 →