Hillai Ben-Sasson and Ronen Shustin, Security Researchers at Wiz, highlight that gaining access to the Docker API socket or an HTTP request can allow an attacker to spawn a privileged container.
This container can share namespaces and volumes with the host Kubernetes node, effectively granting the attacker full node access.
Watch the full episode: https://ku.bz/yr16qNTFx
Post #1425
541
Forwarded from KubeFM