PROJET AUTOBLOG


The Hacker News

Site original : The Hacker News

⇐ retour index

Kubernetes RBAC Exploited in Large-Scale Campaign for Cryptocurrency Mining

vendredi 21 avril 2023 à 15:26
A large-scale attack campaign discovered in the wild has been exploiting Kubernetes (K8s) Role-Based Access Control (RBAC) to create backdoors and run cryptocurrency miners. "The attackers also deployed DaemonSets to take over and hijack resources of the K8s clusters they attack," cloud security firm Aqua said in a report shared with The Hacker News. The Israeli company, which dubbed the attack 

Kubernetes RBAC Exploited in Large-Scale Campaign for Cryptocurrency Mining

vendredi 21 avril 2023 à 15:26

GhostToken Flaw Could Let Attackers Hide Malicious Apps in Google Cloud Platform

vendredi 21 avril 2023 à 14:13
Cybersecurity researchers have disclosed details of a now-patched zero-day flaw in Google Cloud Platform (GCP) that could have enabled threat actors to conceal an unremovable, malicious application inside a victim's Google account. Dubbed GhostToken by Israeli cybersecurity startup Astrix Security, the shortcoming impacts all Google accounts, including enterprise-focused Workspace accounts. It

GhostToken Flaw Could Let Attackers Hide Malicious Apps in Google Cloud Platform

vendredi 21 avril 2023 à 14:13

14 Kubernetes and Cloud Security Challenges and How to Solve Them

vendredi 21 avril 2023 à 13:50
Recently, Andrew Martin, founder and CEO of ControlPlane, released a report entitled Cloud Native and Kubernetes Security Predictions 2023. These predictions underscore the rapidly evolving landscape of Kubernetes and cloud security, emphasizing the need for organizations to stay informed and adopt comprehensive security solutions to protect their digital assets. In response, Uptycs, the first