TGViewer
Kubesploit Kubesploit @kubesploit · 2.13K subscribers
Post #1457 458

Forwarded from KubeFM

Hillai Ben-Sasson and Ronen Shustin, Security Researchers at Wiz, explain how gaining code execution on a node can allow attackers to exploit kubelet credentials to access sensitive cluster resources.

This issue highlights the risks of overly powerful service accounts, even on isolated nodes, as they can inadvertently expose sensitive data from other customers.

Watch the full episode: https://ku.bz/yr16qNTFx
More from @kubesploit
  1. Sep 30, 2026FQDN Network Policy turns hostnames into current IP addresses and creates standard Kuberne…
  2. Sep 30, 2026"The next 10 years are going to be boring — in the good sense." Mauro Morales sees Kuberne…
  3. Sep 30, 2026This week on Learn Kubernetes Weekly 203: 🔥 Building Modelplane on Crossplane 🚪 Kubernet…
  4. Sep 29, 2026This tutorial shows how to let cert-manager issue Let's Encrypt certificates for services…
  5. Sep 29, 2026This article explains how to design a production-grade MCP server for platform teams, with…
  6. Sep 28, 2026This article follows a secret from an external store into a pod through the Secrets Store…
Threads Profile ViewerView any public Threads profile without an account.Open ThreadLook →Writing with AI? Make it sound human.Metric37 rewrites AI drafts so they read naturally. Free AI detector, 1,500 words free.Try Metric37 →