CyberWire Daily

Breaking down a high-severity vulnerability in Kubernetes. [Research Saturday]

Apr 13, 2024 · 11 min · Season 8 · Episode 325Bonus
0:00-11:45

Streams straight from the publisher. podnod never proxies or re-hosts episode audio.

Tomer Peled, a Security & Vulnerability Researcher from Akamai is sharing their work on "What a Cluster: Local Volumes Vulnerability in Kubernetes." This research focuses on a high-severity vulnerability in Kubernetes, allowing for remote code execution with system privileges on all Windows endpoints within a Kubernetes cluster.

The research states "The discovery of this vulnerability led to the discovery of two others that share the same root cause: insecure function call and lack of user input sanitization."

The research can be found here: