The Security Camera for Modern Apps CNCF GRADUATED PROJECT created by Sysdig
What is Falc o ? Cloud Native Runtime Security Runtime security engine Observability for endpoints and cloud infrastructure Built on eBPF Integrated with Kubernetes CNCF GRADUATED PROJECT
About Falco
The Falco sensor
Sensor Sensor Sensor Sensor System Calls System Calls Audit Logs CloudTrail Alerts Collector High level architecture
High level architecture
Falco High level architecture
Falco rule example A shell is run in a container
KCP, with Marvin Beckers Spotify AI Platform, with Avin Regmi and David Xia Dagger, with Solomon Hykes https://kubernetespodcast.com Podcast
Falcosidekick
Falco Talon What is it good for? React in real-time to the Falco Events Allow fine granularity to match the events to react to Responding to default rules with specific overrides Falco Talon Response Engine for managing threats in Kubernetes clusters.
Falco Talon
Falco Talon Quarantine Pod in Network Policy
CNCF GRADUATED PROJECT Users and builders
Demo Detecting a Crypto Mining Malware attack with Falco live Demo : https://falco.org/training/
Free E-Book
Questions
Resources Get started at Falco.org Check out the Falco project in Github Get involved in the Falco community Meet the maintainers on the Falco Slack Follow @falco_org on Join a Falco workshop