<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Kubernetes on microsegment.io</title>
    <link>https://microsegment.io/tags/kubernetes/</link>
    <description>Recent content in Kubernetes on microsegment.io</description>
    <generator>Hugo</generator>
    <language>en-us</language>
    <lastBuildDate>Tue, 14 Apr 2020 00:00:00 +0000</lastBuildDate>
    <atom:link href="https://microsegment.io/tags/kubernetes/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>Thoughts on the Attack matrix for Kubernetes</title>
      <link>https://microsegment.io/2020/04/14/thoughts-on-the-attack-matrix-for-kubernetes/</link>
      <pubDate>Tue, 14 Apr 2020 00:00:00 +0000</pubDate>
      <guid>https://microsegment.io/2020/04/14/thoughts-on-the-attack-matrix-for-kubernetes/</guid>
      <description>&lt;h1 id=&#34;introduction&#34;&gt;Introduction&lt;/h1&gt;&#xA;&lt;p&gt;In a recent blog post Yossi Weizman talks about the &lt;a href=&#34;https://www.microsoft.com/security/blog/2020/04/02/attack-matrix-kubernetes/&#34;&gt;Attack matrix for&#xA;Kubernetes&lt;/a&gt;&#xA;and i had a couple of thoughts about it. As Yossi rightly says, Kubernetes is&#xA;becoming a vital part in the compute stack of many companies. What i hear in my&#xA;network and during sessions with IT security teams is that they face new&#xA;challenges with Kubernetes-based orchestration platforms. The container&#xA;platforms are also perceived like a black box for traditional networking and IT&#xA;security folks, so it makes sense to understand the security risks that are&#xA;inherent to those platforms first.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Kubernetes podcast on attacking k8s</title>
      <link>https://microsegment.io/2019/08/06/attacking-kubernetes/</link>
      <pubDate>Tue, 06 Aug 2019 00:00:00 +0000</pubDate>
      <guid>https://microsegment.io/2019/08/06/attacking-kubernetes/</guid>
      <description>&lt;p&gt;The current &lt;a href=&#34;https://kubernetespodcast.com/episode/065-attacking-and-defending-kubernetes/&#34;&gt;Kubernetes Podcast&lt;/a&gt;&#xA;gives a great view into how to attack kubernetes clusters. I have been talking&#xA;about this all the time when i see OpenShift or kubernetes clusters that are trying&#xA;to protect the container infrastructure with tools made for protecting pods, but&#xA;hardly protect the container orchestration platform itself.&lt;/p&gt;&#xA;&lt;p&gt;Securing the container infrastructure is hard and not doing it may lead to&#xA;things like cluster takeover or host escapes.&lt;/p&gt;</description>
    </item>
  </channel>
</rss>
