Session

"I Own your Cluster" -Taking over AWS Kubernetes clusters with Chain Attack

This presentation explores groundbreaking research revealing critical vulnerabilities within AWS Kubernetes environments. In this session, we will examine two security issues discovered that have the potential to impact thousands of Kubernetes clusters hosted on AWS, posing significant security risks. Additionally, attendees will learn about the sophisticated attack methodology developed specifically for AWS Kubernetes, detailing a chain attack capable of taking over Kubernetes nodes and clusters, resulting in unauthorized access and potential data compromise.

We will delve into techniques attackers use to bypass security controls, breach secured pods, and gain privileged access to Kubernetes APIs. Furthermore, the session provides an in-depth analysis of AWS Kubernetes architecture to illustrate critical components that enable these attacks. Attendees will leave with a clear understanding of the attack mechanics and specific exploitation strategies involving AWS cloud infrastructure.

Chen Shiri

Cyber Security Researcher, Accenture Security

Tel Aviv, Israel

Actions

Please note that Sessionize is not responsible for the accuracy or validity of the data provided by speakers. If you suspect this profile to be fake or spam, please let us know.

Jump to top