囍频道
2 天前
https://fixupx.com/grahamhelton3/status/1996061681949311078
FixupX
Graham Helton (too much for zblock) (@GrahamHelton3)
I'm releasing research soon detailing a technique to take over Kubernetes clusters. It allows running arbitrary commands in EVERY pod in the cluster using only a commonly granted "read only" RBAC permission.
Oh and it's not logged by Kubernetes AuditPolicy…
Home
Powered by
BroadcastChannel
&
Sepia