Navigation
Recherche
|
Don't want your Kubernetes Windows nodes hijacked? Patch this hole now
vendredi 24 janvier 2025, 16:00 , par TheRegister
SYSTEM-level command injection via API parameter *chef's kiss*
A now-fixed command-injection bug in Kubernetes can be exploited by a remote attacker to gain code execution with SYSTEM privileges on all Windows endpoints in a cluster, and thus fully take over those systems, according to Akamai researcher Tomer Peled.…
https://go.theregister.com/feed/www.theregister.com/2025/01/24/kubernetes_windows_nodes_bug/
Voir aussi |
56 sources (32 en français)
Date Actuelle
lun. 27 janv. - 05:15 CET
|