The article walks through a hands-on lab where a Flask application is exploited to gain initial access to a Kubernetes cluster.
This is followed by privilege escalation using GitHub CI/CD credentials and exfiltrating sensitive data from a database.
More: https://soc-inspiration.medium.com/hands-on-lab-full-kubernetes-compromise-what-will-your-soc-do-about-it-3866106cf041
Post #1149
523
