🚀 DevOps Certified Professional
📅 Starting: 1st of Every Month 🤝 +91 8409492687 | 🤝 +1 (469) 756-6329 🔍 Contact@DevOpsSchool.com

Kubernetes security flaw also earns bug bounty from Microsoft

Kubernetes

Upgrade & Secure Your Future with DevOps, SRE, DevSecOps, MLOps!

We spend hours on Instagram and YouTube and waste money on coffee and fast food, but won’t spend 30 minutes a day learning skills to boost our careers.
Master in DevOps, SRE, DevSecOps & MLOps!

Learn from Guru Rajesh Kumar and double your salary in just one year.


Get Started Now!

Source:-portswigger.net

Security researchers earned bug bounties from both Kubernetes and Microsoft after uncovering vulnerabilities in versions of the container technology that were hosted on Microsoft Azure.

French researchers Brice Augras of Groupe Asten and Christophe Hauquiert of Nokia applied a server-side request forgery (SSRF) attack to put together a privilege elevation exploit.

The duo developed the attack after setting out to prepare a talk on Kubernetes security in a managed service environment.

Dynamic exploit
The flaw (CVE-2020-8555) related to the dynamic volume provisioning technology that comes bundled with Kubernetes, and more specifically the in-core provisioning mechanism.

By messing with the provisioning process, the researchers were able to access the cloud provider’s internal resources.

This opened the gateway to various exploits, such as dumping internal credentials/privilege escalation.

“The root cause (in this case a server-side request forgery) helped us escape our customer environment on multiple providers offering [Kubernetes’] managed service,” the researchers explain in a technical blog post.

The security pros reported the vulnerabilities to Microsoft in December and Kubernetes in January.

Bug bounties were received from both organizations before disclosure of the flaw, which was initially planned in March but was postponed due to the coronavirus pandemic.

Commenting on the research, Augras told The Daily Swig: “This was a really crazy experience; we didn’t expect a such great feedback from the community! Stay tuned for more content as we’re hardly working on managed service applications with an implementation similar to Kubernetes.”

Subscribe
Notify of
guest


This site uses Akismet to reduce spam. Learn how your comment data is processed.

0 Comments
Oldest
Newest Most Voted
Inline Feedbacks
View all comments
0
Would love your thoughts, please comment.x
()
x