2025-09-05 –, Workshops 1
Join this hands-on workshop where you’ll step into the shoes of both an attacker and a defender in a Kubernetes environment.
We’ll explore real-world attack scenarios used to exploit clusters for profit, and demonstrate how to detect, mitigate, and prevent them. Along the way, you’ll learn how to leverage OSS security tools to strengthen your defenses and keep your Kubernetes workloads secure and resilient.
Workshop Title: “Red vs Blue: Defending Kubernetes in the Real World”
In this interactive, hands-on workshop, participants will dive into the world of Kubernetes security by taking on two opposing roles: attacker and defender.
First, we’ll explore how a malicious actor might target a Kubernetes cluster to gain access, escalate privileges, and exploit workloads for profit—think cryptominers, data exfiltration, or pivoting through the network. You’ll learn about common misconfigurations, exposed services, and privilege escalation paths that attackers love to exploit.
Then, we’ll switch perspectives and become defenders. You’ll see how to detect these attacks in action, respond to incidents, and harden the cluster using built-in Kubernetes mechanisms and Azure’s security suite—including tools like Microsoft Defender for Containers, Azure Policy, and network security controls.
By the end of the session, you’ll walk away with:
• A deeper understanding of real-world Kubernetes attack techniques
• Practical experience identifying and remediating vulnerabilities
• Hands-on exposure to Azure-native tools for container and cluster security
• Actionable takeaways to improve your own cluster’s resilience
Whether you’re a platform engineer, security professional, or just curious about cloud-native security, this workshop will equip you with both the attacker mindset and the defender’s toolkit to better protect your Kubernetes workloads.
Note: Participants should be comfortable using the terminal and have basic Kubernetes knowledge. Bring your laptop—clusters and tooling will be provided!
Alessandro, a seasoned community leader, has spent the last few years architecting cloud-native infrastructures for Microsoft customers, energizing the Dutch tech community, and helping professionals achieve CKx certification. With over 25 years immersed in open-source technologies, Alessandro is deeply passionate about the cloud-native ecosystem. He's now back at Microsoft as a Senior Technical Specialist in Application Innovation & AI.