Can We Really Parse DNS in eBPF? Improving Cilium ToFQDN With In-kernel Policy Upda... Hemanth Malla

Presenters Hemanth Malla Source CiliumCon NA 2025 Unleashing the Power of eBPF: Cilium’s DNS Parsing Revolution 🚀 Hey tech enthusiasts! Ever found yourself frustrated by network policies that feel a bit… clunky? Especially when dealing with those ever-changing IP addresses tied to domain names? Well, get ready for some exciting news! Hemanth, a rockstar Cilium CNCF maintainer and principal engineer at Microsoft on the Azure container networking team, has just dropped a bombshell: Cilium can now parse DNS directly within eBPF! This isn’t just an incremental update; it’s a leap forward that promises to transform how we handle FQDN (Fully Qualified Domain Name) network policies. ...

November 24, 2025 · 5 min

From Adoption to Innovation: LinkedIn’s SPIRE Journey - Junyuan Zeng & Wei Zhang, LinkedIn

Presenters Junyuan Zeng Wei Zhang Source OpenSource SecurityCon NA 2025 LinkedIn’s Identity Revolution: From Fragile PKI to Spire-Powered Security! 🚀 Ever feel like your security infrastructure is a house of cards? 🃏 That’s exactly where LinkedIn found itself a few years ago. Their homegrown Public Key Infrastructure (PKI) system, built on a basic Python server, was buckling under the weight of their massive microservice architecture. It was a system that screamed “legacy” – lacking scalability, standard identity formats, and the ability to efficiently manage certificates. Imagine trying to build a skyscraper on a sandcastle foundation! 🏗️ ...

November 24, 2025 · 7 min

Lightning Talk: AIxCC Results and New Open Source AI Projects To Help Secure Open Sou... Jeff Diecks

Presenters Jeff Diecks Source OpenSource SecurityCon NA 2025 AI Cyber Challenge: Revolutionizing Open Source Security with Intelligent Automation 🚀 The world of open-source software is the backbone of our digital infrastructure, but it’s also a prime target for cyber threats. For years, the challenge has been not just finding vulnerabilities, but fixing them efficiently. Enter the AI Cyber Challenge (AICC), a groundbreaking initiative that brought together cutting-edge AI and the open-source community to tackle this critical problem head-on. ...

November 24, 2025 · 5 min

Securing Cloud-Native Workloads from the Metal Up - Tyler Schade, GEICO

Presenters Tyler Schade Source OpenSource SecurityCon NA 2025 From Bare Metal to Bulletproof: Securing Your Cloud-Native Kingdom with TPMs and SPIRE 🚀 The quest for secure, modern infrastructure is a constant battle, especially in the dynamic world of cloud-native. Geico Insurance, a company at the forefront of digital transformation, is tackling this challenge head-on, not just in the cloud, but right down to the foundational bare metal of their data centers. Tyler Shade, a Software Engineer at Geico, shared his team’s compelling journey into bootstrapping trust and building a truly secure, identity-first infrastructure. ...

November 24, 2025 · 5 min

Threat Modeling for Kubernetes: Enhancing Security Posture in Complex and Regulat... Maxime Coquerel

Presenters Maxime Coquerel Source OpenSource SecurityCon NA 2025 Revolutionizing Kubernetes Security: From Weeks to Days with AI-Powered Threat Modeling 🚀 In today’s rapidly evolving cloud landscape, securing Kubernetes deployments isn’t just a good idea; it’s an absolute necessity. The intricate nature of Kubernetes, with its distinct control and data planes, presents a complex web of potential vulnerabilities. But what if we told you that the arduous task of threat modeling, which traditionally consumes weeks, could be slashed down to mere days? That’s precisely the promise of an innovative AI-powered solution presented by Maxim Cochril, Principal Cloud Security Architect at RBC and CNCF Ambassador. ...

November 24, 2025 · 6 min