Showing posts with the label Hardening Kubernetes

Stop Kubernetes Container Escapes: Drop Linux Capabilities

Most Kubernetes pods run with significantly more power than they actually need to function. By default, the container runtime grants a subset of powerful Linux capabilities to every process. If an …
Stop Kubernetes Container Escapes: Drop Linux Capabilities
OlderHomeNewest