Home / Companies / GitGuardian / Blog / Post Details
Content Deep Dive

BSides Chicago 2025: Operationalizing Identity Risk In Cloud-Native Environments

Blog post from GitGuardian

Post Details
Company
Date Published
Author
Dwayne McDaniel
Word Count
1,636
Company Posts That Month
11
Language
English
Hacker News Points
-
Post removed?
No
Summary

BSides Chicago 2025, held at the Hilton Chicago with around 700 attendees, explored the evolving importance of identity in cybersecurity, particularly within cloud and hybrid infrastructures. Speakers emphasized that both human and non-human identities are crucial control points in security, with adversaries exploiting identity chains and cloud control planes for stealthy attacks. Scott Hawk highlighted how attackers leverage low-privilege credentials to escalate privileges using techniques like vishing and SIM swapping, while Nikos Vourdas discussed the risks associated with service principals in Azure environments. Pulkit Garg and Jie Wu noted the vulnerabilities in Kubernetes configurations that could lead to identity abuse and control-plane breaches. The overarching theme was a shift from traditional network defenses to focusing on identity management, advocating for context-aware IAM, deception technologies like honeytokens, and rigorous monitoring of both human and machine identities to mitigate risks in a rapidly changing digital landscape.

Trends Found in this Post
Trend Post Mentions Total Month Mentions Posts Companies MoM
Kubernetes 8 1,297 225 80 -9%
Observability 3 2,534 521 146 +9%
Secrets Management 2 1,268 170 83 +9%
Use This Data

Use this post, company, and trend context to find content marketing opportunities, perform competitive analysis, or address product feature gaps via the Plushcap MCP server or the Plushcap API.