
Hackers With Root Access Can Hijack SPIFFE Identities on Kubernetes Nodes
Security researchers have demonstrated how attackers with root-level access to a Kubernetes node could impersonate workloads and obtain their machine identities in SPIFFE/SPIRE environments. The research, published by Palo Alto Networks Unit 42, shows that an attacker who has already compromised a node can manipulate Linux control group, or cgroup, information used during workload attestation. […]
The post Hackers With Root Access Can Hijack SPIFFE Identities on Kubernetes Nodes appeared first on Cyber Security News.