Tools Resources
Kubernetes runtime detection

The guide to analyzing Kubernetes runtime detection alerts using Amazon Athena

Ori Abargil<
By: Ori Abargil
Sep 15, 2022

Introduction Panoptica created a public repository with common use cases to simulate unusual/malicious activities within the Kubernetes cluster. The malicious activities include attempts to container escapes, reconnaissance actions, and cryptocurrency mining. All presented use cases are detected by the Panoptica Kubernetes Runtime Protection solution that triggers alerts with full information regarding suspicious activity. You can stream the alerts to an S3 bucket by configuring an “AWS S3”…