Maxime Coquerel's Avatar

Maxime Coquerel

@zigmax.bsky.social

Cloud Security Geek ! | #CNCF Ambassador | Microsoft #MVP #Azure & #Security | Cloud Security Vulnerability Research | #AI #CloudSecurity #Kubernetes #SecOps Blog: zigmax.net

59 Followers  |  73 Following  |  61 Posts  |  Joined: 30.10.2024  |  1.9014

Latest posts by zigmax.bsky.social on Bluesky


Post image

Ready for #CNCF Meetup #QuebecCity! ๐Ÿคฉ

17.02.2026 23:35 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Preview
Cloud Native Rejekts Europe 2026 Sat, March 21, 2026

๐Ÿšจ This is not a drill!!! ๐Ÿšจ

The tickets for Cloud Native Rejekts are available NOW! ๐Ÿ˜ฎ

We can't wait to see you all in Amsterdam! ๐Ÿ‡ณ๐Ÿ‡ฑ

pretix.eu/rejekts/reje...

16.02.2026 16:40 โ€” ๐Ÿ‘ 9    ๐Ÿ” 7    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 3
Preview
KCD Toronto 2026 | CNCF In-person Event - Join us for the inaugural KCD Toronto 2026, the biggest event in Toronto for the cloud-native and Kubernetes community on May 13, 2026 at The Quay!

Early Bird Tickets are now on sale for KCD Toronto! Tell your friends! Early Bird pricing ends March 1st, so get 'em while you can!

community.cncf.io/events/detai... #KCD #KCDToronto #Toronto #CNCF

17.02.2026 22:31 โ€” ๐Ÿ‘ 1    ๐Ÿ” 1    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Post image

The clock is ticking!
Only 2 days remains to submit your CFP for the Toronto event. Share your expertise with our community before the window closes.

sessionize.com/kcd-toronto-... #kcd #CNCF #kcd-toronto #toronto

15.02.2026 00:56 โ€” ๐Ÿ‘ 1    ๐Ÿ” 1    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
NONO - Secure Shell for AI Agents OS-enforced capability sandbox for running untrusted AI agents. No escape hatch. Works with Claude, GPT, and any AI agent.

Nono - Secure Shell for AI Agents nono.sh #AISecurity

02.02.2026 04:11 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Preview
GitHub - deadbits/vigil-llm: โšก Vigil โšก Detect prompt injections, jailbreaks, and other potentially risky Large Language Model (LLM) inputs โšก Vigil โšก Detect prompt injections, jailbreaks, and other potentially risky Large Language Model (LLM) inputs - deadbits/vigil-llm

Vigil - Detect prompt injections, jailbreaks, and other potentially risky Large Language Model (LLM) inputs github.com/deadbits/vig...

02.02.2026 00:35 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Preview
Hunting GCP Buckets - Hacking The Cloud How to find valid and invalid GCP Buckets using tools

GCP buckets and AWS S3 buckets are nearly identical under the hood. CloudStorageFinder works for both with minimal changes - just swap the endpoint URL. Here's how to hunt for GCP buckets.

29.01.2026 15:05 โ€” ๐Ÿ‘ 2    ๐Ÿ” 1    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Post image

Weโ€™re incredibly excited to welcome RBC as our Diamond & Committee Partner for KCD Toronto 2026! ๐Ÿค ๐Ÿ˜„

๐Ÿ”— Learn more about sponsorship opportunities: kcdtoronto.ca/sponsors

#KCDToronto #CloudNative #Kubernetes #TechCommunity #RBC

26.01.2026 23:28 โ€” ๐Ÿ‘ 14    ๐Ÿ” 5    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Preview
Pwning Claude Code in 8 Different Ways Introduction Hello, Iโ€™m RyotaK (@ryotkak ), a security engineer at GMO Flatt Security Inc. A few months ago, I came across an interesting behavior while using Claude Codeโ€”it executed a command without...

Pwning Claude Code in 8 Different Ways flatt.tech/research/pos... #AISecurity #CloudSecurity

15.01.2026 00:45 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Preview
Running Any AI Agent on Kubernetes: Step-by-Step Learn how to use BYO (Bring Your Own) agents in kagent with the Agentic Development Kit (ADK) to build, integrate, and operate scalable agentic AI systems with Kubernetes-native orchestration, governa...

Running any #AI Agent on #Kubernetes! www.cloudnativedeepdive.com/running-any-... #AISecurity #CloudSecurity

05.01.2026 15:34 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Preview
We Got Claude to Fine-Tune an Open Source LLM Weโ€™re on a journey to advance and democratize artificial intelligence through open source and open science.

We Got Claude to Fine-Tune sn Open Source LLM huggingface.co/blog/hf-skil... #AI #CloudSecurity #LLM

01.01.2026 13:23 โ€” ๐Ÿ‘ 2    ๐Ÿ” 1    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
LinkedIn This link will take you to a page thatโ€™s not on LinkedIn

Just published my recap ofย KubeCon NA 2025 - Atlanta! ๐Ÿ‡บ๐Ÿ‡ธ
My first time attending as aย CNCF Ambassadorย + speaking twice ๐ŸŽค๐Ÿš€
๐Ÿ‘‰ย lnkd.in/eHYa2z82
AI on K8s, Zero-Trust, Platform Engineering, SPIFFE/SPIRE & more!
#KubeCon #CNCF #Kubernetes #CloudNative #CloudSecurity #AI #PlatformEngineering

25.11.2025 14:49 โ€” ๐Ÿ‘ 2    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Preview
GitHub - arm/metis: Metis is an open-source, AI-driven tool for deep security code review Metis is an open-source, AI-driven tool for deep security code review - arm/metis

Metis is an open-source, AI-driven tool for deep security code review github.com/arm/metis #CloudSecurity #AISecurity

23.11.2025 15:36 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Post image

Welcome #KubeCon! ๐Ÿคฉ

09.11.2025 23:21 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

What a ride at #CloudNativeRejekts NA 2025 in Atlanta! โšก
Deep-tech talks, AI breakthroughs, and hardcore #Kubernetes security insights, all powered by an incredible community.
Full recap ๐Ÿ‘‰ย zigmax.net/cloud-native-rโ€ฆ
Next stop: #KubeCon ๐Ÿš€ #CloudNative #CloudSecurity

09.11.2025 23:19 โ€” ๐Ÿ‘ 2    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Post image

Ready!! ๐Ÿคฉ #Rejekts2025

08.11.2025 15:27 โ€” ๐Ÿ‘ 2    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Post image

On my way to #KubeCon + #CloudNativeCon North America! ๐Ÿ›ซ

07.11.2025 14:27 โ€” ๐Ÿ‘ 3    ๐Ÿ” 0    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0
Post image

Super excited to be part of #DevFest Montreal 2025! Canโ€™t wait to connect, learn, and share ideas with the community. ๐Ÿš€

01.11.2025 13:37 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Post image

3 WEEKS AWAY! ๐Ÿš€

Cloud Native @rejekts.io is the essential FREE, in-person event on Nov 8 in Atlanta, GA. Explore hidden technical gems that you won't want to miss.

Get your free ticket โžก๏ธ cloud-native.rejekts.io

18.10.2025 19:12 โ€” ๐Ÿ‘ 1    ๐Ÿ” 1    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Post image

Orbit is a CLI tool that unifies the discovery of and access to the managed #Kubernetes clusters across different cloud providers (AWS EKS, Azure AKS, and Google GKE). It adds newly discovered clusters to your existing kubeconfig.

gitlab.com/RMJx1/orbit

// Source: #Kubernative Telegram channel

16.10.2025 13:45 โ€” ๐Ÿ‘ 4    ๐Ÿ” 2    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Preview
KubeCon + CloudNativeCon North America 2025 Co-Located Event Deep Dive: KyvernoCon This is the very first KyvernoCon! While Kyverno has been part of the CNCF since November 2020, and has had a strong presence at past KubeCon events through policy as code focused talksโ€ฆ

KyvernoCon is here! ๐ŸŽ‰
An inaugural event for the #policyascode community, co-located with #KubeCon + #CloudNativeCon NA 2025.

Connect with contributors, hear real-world stories, and see how Kyverno is scaling beyond Kubernetes.

๐Ÿ› ๏ธ Join us โ†’ www.cncf.io/blog/2025/09...

#Kyverno #CNCF #CloudNative

18.09.2025 21:22 โ€” ๐Ÿ‘ 5    ๐Ÿ” 2    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Post image

Excited to join #BSidesMontreal today!

13.09.2025 13:06 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Post image

๐Ÿคฉ๐Ÿคฉ ! #CNCF Meetup #QuebecCity!

10.09.2025 22:39 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Preview
Kubernetes Escape Room Kubernetes Escape Room: A tool that analyzes Kubernetes Pod manifests to identify potential container escape vulnerabilities and provides security recommendations for mitigation.

#Kubernetes Escape Room partyrock.aws/u/bernardoor...

10.09.2025 00:02 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Preview
Data Exfiltration through S3 Server Access Logs - Hacking The Cloud Exfiltrate data via S3:GetObject and S3 server access logs.

Ever thought of using S3 server access logs for data exfiltration? If you control an IAM identity with `s3:GetObject`, you could receive log details including denied requests alongside the data you aim to exfiltrate. It's a unique take on cloud security worth exploring. Learn more:

04.09.2025 14:03 โ€” ๐Ÿ‘ 1    ๐Ÿ” 1    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Breaking Boundaries - Kubernetes Namespaces and multi-tenancy AmberWolf Security Research Blog

Breaking Boundaries - Kubernetes Namespaces and multi-tenacy blog.amberwolf.com/blog/2025/se... #cloudsecurity #kubernetessecurity

01.09.2025 11:35 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Preview
Kubernetes 1.34: Top Security Features & Enhancements - ARMO Improve your cloud security with the latest upgrades in Kubernetes 1.34, from mutual TLS and token hardening to CEL-based admission policies

Kubernetes 1.34 security features www.armosec.io/blog/kuberne... #KubernetesSecurity #CloudSecurity

23.08.2025 09:34 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Preview
Backdoor on S3 using bucket policy While exploring the labs provided by Cybr, I came across one focused on Backdoor execution on S3โ€Šโ€”โ€ŠBackdooring an S3 Bucket via its Bucketโ€ฆ

Backdoor on s3 policy #cloudsecurity medium.com/@akarshad428...

23.08.2025 07:31 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Preview
Another ECS Privilege Escalation Path ECS has a range of known privilege escalation vectors. We discovered another which relies on using functionality designed for the ECS agent to self-register a compromised EC2 and override a task defin...

labs.reversec.com/posts/2025/0...

20.08.2025 13:42 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Post image

Want more Platform Engineering content? Our friends @kubecrash.bsky.social are hosting a free, virtual conference on Tuesday, September 23rd! Get practical insights from speakers like Dima Shevchuk (Grammarly) & Lisa Shissler Smith (formerly Netflix).

Register now: kubecrash.io

19.08.2025 13:26 โ€” ๐Ÿ‘ 4    ๐Ÿ” 2    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

@zigmax is following 20 prominent accounts