Container internals and Privilege Escalation
2025-09-06 , Rookie Track

Modern applications are powered by containers. It is important as security professionals to understand how container work and what are the possible attack vectors in containerised environment. In this talk we will talk briefly about internals and showcase case studies and real life attack examples involving containers.


We will be talking about the below topics:
-Registry and image layers
-Cgroups
-Namespaces
- Briefly touch upon docker vs kubernetes.
- Talk about one real life attack example.

Prabhsimran Singh is a Offensive Security Analyst at BDO LLP UK, with deep expertise in red teaming, cloud security, and security automation. He has led threat simulations, CI/CD hardening, and cloud infrastructure defense across roles at IBM, Oportun, Finelabs, and Goaco. A CREST CRT and OSCP-certified professional, he actively contributes to open-source tooling, speaks at security events, and mentors aspiring professionals in offensive security.