Security BSides Las Vegas 2025

Amit Serper

Amit Serper is a seasoned security researcher with over 20 years of experience spanning vulnerability research, malware analysis, exploitation, and reverse engineering. Known for high-impact discoveries and deep technical insights, Amit has contributed to both defensive and offensive security domains. He currently serves as a Lead Security Researcher at CrowdStrike, where he focuses on uncovering advanced threats and novel attack techniques. His work has been widely cited in industry reports and media, and he frequently presents at leading security conferences worldwide. Before joining Crowdstrike, Amit worked multiple security research roles at companies such as Akamai, Cybereason, and other startups.


Session

08-04
18:00
45min
From interview questions to cluster damage: Adventures in k8s cluster shenanigans
Travis Lowe, Amit Serper

What started as a simple exercise to create Kubernetes interview questions took an unexpected turn into discovering some interesting cluster security quirks. While brainstorming scenarios to test candidates' knowledge, we found ourselves saying "wait, would that actually work?" more times than we expected. This talk shares these insights, showing how even a cluster with a common configuration can lead to surprising cluster disruptions. We will guide you through our journey, sharing both the techniques we stumbled upon and practical ways to keep your Kubernetes infrastructure safe.

Common Ground
Florentine F