Skip to main content

Command Palette

Search for a command to run...

The Tale of Smokey and the Crypto Bandits

eBPF Summit 2020

Published
2 min read
R

I’m the founder and CEO of Okteto, where we’re busy re-imagining the developer experience for cloud native applications.

Before Okteto, I built enterprise chat products at Atlassian, application lifecycle management tools at Elasticbox (now part of Centurylink) and cloud services at Microsoft Azure.

Okteto Cloud is a developer platform, powered by Kubernetes. The biggest benefit that our users get from our platform is the ability to easily deploy any type of workload with one click. A group of Crypto Bandits discovered us and decided to set up camp on our platform and use it to mine crypto coins. What's worse, they used our "source to deploy" feature to push their instructions to a Github repo, for more people to join their merry gang. A gold rush started…

In this talk, the Okteto Team will talk about how they were able to leverage Falco and eBPF to detect and repel abuse across our entire fleet of Kubernetes clusters. We'll share details about our experiments and current Falco implementation, how abusing Falco rules can bring a cluster down, and how we managed to find a balance between repealing a gang of crypto-bandits and keeping our systems online while ensuring that our good citizens were oblivious about the whole thing.

My Talks

Part 25 of 41

Talks on Startups, Development, Cloud Native Applications, etc...

Up next

Let's Learn Okteto and the Operator-SDK

Saiyam Pathak's Let's Learn channel