Skip to content

cainzhong/cks-learning-guide

Repository files navigation

CKS 官方考纲

CKS 官方考纲: [CKS_Curriculum_ v1.19.pdf](./CKS_Curriculum_ v1.19.pdf)

Cluster Setup - 10%

Securing a Cluster

Cluster Hardening - 15%

System Hardening - 15%

Minimize Microservice Vulnerabilities - 20%

Supply Chain Security - 20%

Monitoring, Logging and Runtime Security - 20%

Extra helpful material

Books

  1. Container Security or view [here](./books/Container Security by Liz Rice)
  2. Learn Kubernetes Security or view [here](./books/Learn Kubernetes Security by Pranjal Jumde; Loris Degioanni; Kaizhe Huang)

Youtube Videos

  1. Google/Ian Lewis: Kubernetes security best practices
  2. Code in Action for the book Learn Kubernetes Security playlist
  3. Kubernetes security concepts and demos
  4. How to Train your Red Team (for Cloud-Native) - Andrew Martin, ControPlane
  5. InGuardians/Jay Beale: Kubernetes Practical attacks and defences\
  • Webinars
    • AquaSec webiners collection - Webinars and videos presented by leading industry experts covering Microservices, Container & Serverless security, Kubernetes, DevSecOps, and everything related to the most disruptive area in IT.

Containers and Kubernetes Security Training

  1. Killer.sh CKS practice exam ⟹ use code walidshaari for 20% discount
  2. Udemy Kubernetes CKS 2020 Complete Course and Simulator
  3. Linux Foundation Kubernetes Security essentials LFS 260
  4. Linux Academy/ACloudGuru Kubernetes security
  5. Cloud native security defending containers and kubernetes
  6. Tutorial: Getting Started With Cloud-Native Security - Liz Rice, Aqua Security & Michael Hausenblas
  7. K21 academy CKS step by step activity hands-on-lab activity guide
  8. Andrew Martin Attacking and Defending Cloud Native Infrastructure
  9. Andrew Martin Control Plane Security training

Extra Kubernetes security resources

  1. Kubernetes-security.info
  2. Aquasecurity Blogs
  3. Control-plane/Andrew Martin @sublimino: 11 ways not to get hacked
  4. Securekubernetes
  5. Simulator: A distributed systems and infrastructure simulator for attacking and debugging Kubernetes

CVEs

  1. CNCF Kubernetes Security Anatomy and the Recently Disclosed CVEs (CVE-2020-8555, CVE-2020-8552)
  2. Kubernetes Vulnerability Puts Clusters at Risk of Takeover (CVE-2020-8558)

Other CKS related repos

  1. Stackrox CKS study guide
  2. Viktor Vedmich - CKS resources
  3. Abdennour - CKS resources
  4. Ibrahim Jelliti - CKS resources
  5. Madhu Akula's Kubernetes Goat - vulnerable cluster environment to learn and practice Kubernetes security.
  6. Kubernetes Capture the Flag vagrant environment - was hosted online on http://k8s-ctf.rocks/

参考资料:

walidshaari/Certified-Kubernetes-Security-Specialist

About

No description, website, or topics provided.

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published