Stop Kubernetes Container Escapes: Drop Linux Capabilities 26 Mar 2026 Post a Comment Most Kubernetes pods run with significantly more power than they actually need to function. By default, the container runtime grants a subset of po… CAP_SYS_ADMINContainer EscapeHardening KubernetesKubernetes SecurityLinux CapabilitiesPod Security AdmissionSecurityContext