苹果测试工程师的日常
01:21 · 2025年12月4日 · 周四
https://fixupx.com/grahamhelton3/status/1996061681949311078
FixupX
Graham Helton (too much for zblock) (@GrahamHelton3)
I'm releasing research soon detailing a technique to take over Kubernetes clusters. It allows running arbitrary commands in EVERY pod in the cluster using only a commonly granted "read only" RBAC permission.
Oh and it's not logged by Kubernetes AuditPolicy…
Home
Powered by
BroadcastChannel
&
Sepia