Monday, June 27, 2022

Detecting a Container Escape with Cilium and eBPF

November 16, 2021

Author: Natália Réka Ivánkó, Security Engineer

If you run Cloud Native Workloads, you better secure them. After all, services are often exposed to the public and Workloads might belong to various tenants. In this blog post we will show you how an attacker with access to your Kubernetes cluster could do a container escape: running a pod to gain root privileges, escaping the pod onto the host, and persisting the attack with invisible pods and fileless executions. And we will sh…

