CyberWire Daily
Breaking down a high-severity vulnerability in Kubernetes. [Research Saturday]
Apr 13, 2024 · 11 min · Season 8 · Episode 325Bonus
0:00-11:45
Streams straight from the publisher. podnod never proxies or re-hosts episode audio.
Tomer Peled, a Security & Vulnerability Researcher from Akamai is sharing their work on "What a Cluster: Local Volumes Vulnerability in Kubernetes." This research focuses on a high-severity vulnerability in Kubernetes, allowing for remote code execution with system privileges on all Windows endpoints within a Kubernetes cluster.
The research states "The discovery of this vulnerability led to the discovery of two others that share the same root cause: insecure function call and lack of user input sanitization."
The research can be found here: