Sysdig Falco is an open source container security solution designed for behavioral anomaly activity detection. With Sysdig Falco you can continuously monitor and detect container, application, host and network activity... all in one place, from one source of data, with custom rules.
Watch this and we'll show how Sysdig Falco can detect a write that happens to a directory lower than /bin and then we'll take a brief look at the rule set that makes sysdig falco unique!
For more info go to http://www.sysdig.org/falco/
Mark Stemm (mstemm - GitHub) is a Software Engineer with 20 years experience using data and analysis to solve hard problems and build great products. He has a B.S. in Mathematics/Computer Science from Carnegie Mellon University and a M.S. and Ph.D. in Computer Science from the University of California, Berkeley. He's worked at Fast Forward Networks/Inktomi on the first generation of internet-based live video broadcasting, at Cloudmark building the world's leading email anti-spam platform for ISPs and mobile providers, and at Jut building a streaming data analysis and visualization platform. Mark currently works at Sysdig on the open source product Falco, a behavioral activity monitor with full support for containers.
In questa pagina del sito puoi guardare il video online Sysdig Falco - Open Source Docker Security - Detecting a write attack below/bin della durata di ore minuti seconda in buona qualità , che l'utente ha caricato Sysdig 08 agosto 2016, condividi il link con amici e conoscenti, su youtube questo video è già stato visto 578 volte e gli è piaciuto 5 spettatori. Buona visione!