This blog explains how the vulnerability works, what is required to exploit it, and how to identify exposure and detect exploitation attempts at runtime.
145 karma · joined September 4, 2021
This blog explains how the vulnerability works, what is required to exploit it, and how to identify exposure and detect exploitation attempts at runtime.
You can also run Kubescape against Kubernetes manifests which is a great way to stop violations before the resources are deployed to a Kubernetes cluster. The output is identical as scanning a running Kubernetes cluster as seen above
Kubescape can now check that YAML files and HELM charts are configured correctly as defined by NSA and CISA guidance.
No cluster is required and you can scan for misconfigurations as early as when devs are submitting the K8s manifest files.
Kubescape supports new output formats like json and junit xml.
You can integrate Kubescape results output to any devops tool like Jenkins, CricleCI, Github workflows.
If you haven’t checked it out yet, what are you waiting for? https://github.com/armosec/kubescape/