One Compromised Kubernetes Node Can Expose Every Workload Identity Running on It

A Kubernetes node becomes an identity breach point when an attacker gains root access. Research shows a hostile process can impersonate other workloads and obtain their credentials, turning one foothold into wider access across a shared node. The issue affects SPIFFE and SPIRE deployments, which replace long-lived secrets with short-lived workload identities. These credentials let […]

This article has been indexed from Cyber Security News

Read the original article: