

Conferences & Talks
Our speaking engagements, conference presentations, and talks on cloud security topics.
44 sessions found
Talks, Trainings & Villages
We Are Breaking This AI System Right Now
Live on-stage red team attack against a running AI system, with no script and no guaranteed outcome. The audience locks in a prediction before the attack begins. Track 02, Cybersecurity for AI. Presented with Riyaz Walikar and Gaurav Gulati.
Offensive Container Security: From Ideas to Impact, Turning Knowledge into Action
Free, four-hour workshop ahead of BSides Jaipur 2026 on offensive container security, from the ideas to the practical steps that turn them into action. 10:00 AM onwards, with a giveaway and a special discount for attendees.
OWASP EKS Goat: Hands-On AWS EKS Security
Arsenal demo of OWASP EKS Goat: a deliberately vulnerable AWS EKS environment for practising attack paths and the controls that stop them. Arsenal Station 8, Business Hall.
ToolsForge: Launch of Browser-Based IaC Security Auditing with IaC Security Scanner
Technical & Research Track launch of the IaC Security Scanner: browser-based auditing for Terraform, CloudFormation, Kubernetes YAML and Dockerfiles, with no server-side file upload.
Attacking & Defending Containers
Cyber security workshop on how container and cloud environments are attacked and defended, 10:00 AM to 2:00 PM.
EKS Goat: AWS EKS Security Masterclass
Full-day hands-on training on the OWASP EKS Goat lab. Covers real-world AWS EKS misconfigurations across IRSA, RBAC, ECR, IMDS and network paths, then the defensive remediations for each using IAM, admission control and runtime observability with Tetragon.
Container Security Village (Second Edition)
We host Container Security Village at Seasides: a three-day track where Kubernetes and containers meet security. We run the CFP, the schedule, volunteers and sponsors.
EKS Goat: AWS EKS Security Masterclass
Comprehensive training masterclass on AWS EKS security using OWASP EKS Goat for hands-on learning.
Why DevSecOps isn't enough without deep cloud context
Discussion on why DevSecOps isn't enough without deep cloud context, covering cloud security and DevSecOps strategies across AWS, Azure, and GCP, with focus on Kubernetes and container security.
How Poisoned RAG Systems Impact Real-World AI
Exploring how poisoned RAG (Retrieval-Augmented Generation) systems can impact real-world AI applications and security implications.
EKS Goat: AWS EKS Security Masterclass 2025
Comprehensive masterclass on AWS EKS security using OWASP EKS Goat for hands-on learning.
Defending Amazon EKS from Vulnerabilities
Comprehensive guide on defending Amazon EKS clusters from vulnerabilities and security threats.
Attacking Vulnerable Applications on Amazon EKS
Hands-on demonstration of attacking vulnerable applications deployed on Amazon EKS clusters.
AWS EKS & ECR Security - ECR Scanning & EKS Security Fundamentals
Deep dive into AWS EKS and ECR security covering ECR scanning techniques and EKS security fundamentals.
Setting up EKS Lab to Learn Container Security
Setting up Amazon EKS Lab infrastructure for EKS Goat. Covers container security refresh, deploying vulnerable AWS EKS infrastructure, Docker security overview, secret exfiltration with Dive, and Docker security scans.
Policy as Code
Talk on Policy as Code practices and implementation strategies for cloud security.
AWS DevSecOps Integration at 7Eleven
Talk on AWS DevSecOps integration practices and implementation strategies.
Beginner's Guide to Bypassing Falco Runtime Security in K8s
Talk on bypassing Falco runtime security in Kubernetes environments, covering techniques and practical demonstrations.
Google Cloud IAP - A Pentester Viewpoint
Google Cloud Security Assessment from a pentester's lens. Discussion on Google Cloud IAP, assessing its use in environments, and identifying low-hanging fruits to reduce potential risks.
Pentester's Approach to AWS IAM
Comprehensive overview of AWS Identity and Access Management (IAM) focused on penetration testing, covering IAM concepts, policy types, evaluation logic, and attack vectors.
Browser Hacking for fun and Profit
Talk on browser security vulnerabilities and exploitation techniques for fun and profit.
Pentesting GraphQL
Talk on penetration testing techniques for GraphQL APIs, covering common vulnerabilities and exploitation methods.