Примеры finding\security issues "Overly Permissive RBAC Configurations" и "Missing Network Segmentation Controls" для Kubernetes (default config) по классификатору OWASP K8S
Overly permissive RBAC means roles have more permissions than needed, potentially allowing attackers to escalate privileges.
Missing network segmentation controls mean workloads can freely communicate, increasing the risk of lateral movement in case of a breach.
See also:
📌 Kubernetes Hardening Best Practices You Can’t Ignore
📌 Kontra OWASP Top 10 for Kubernetes
#SecDevOps
Post #7517
2.24K
