Posts on cloud-native
4 posts on cloud-native. Notes from public sources and my own test lab.
The Orchestrator or an Insider Trojan? Invisible Dangers in the Kubernetes World
Security has shifted from physical firewalls to the orchestration layer. Let's dive into the dark corners of Kubernetes security—from API Server leaks to RBAC misconfigurations—and talk about how to keep the cluster safe.
The Day You Exposed Kube-apiserver to the Internet, You Handed Over the Keys to Your Cluster
If you aren't seeing 401 or 403 errors in your logs, you're either not being targeted or you're already compromised. Let's dive into the dirty realities of Kubernetes security and how to harden your cluster.
Getting Lost in the Kubernetes Labyrinth: Can You Truly 'Hacker-Proof' Your Cluster?
Ever felt the cold sweat of a cloud bill exceeding your company valuation? Let's look at Kubernetes security through a Red Teamer's lens and fix those common YAML blunders.
Bending the Bars: The Art of Escaping the Container Cage
Forget the fancy slides. Let's talk about how simple misconfigurations like mounting docker.sock or abuse of capabilities turn your sandbox into paper.