DataDog / stratus-red-team

:cloud: :zap: Granular, Actionable Adversary Emulation for the Cloud
https://stratus-red-team.cloud
Apache License 2.0
1.83k stars 215 forks source link

[QUESTION] [k8s] Cluster admin binding #431

Closed loresuso closed 8 months ago

loresuso commented 1 year ago

Would it make sense to implement a technique to create a role binding to a cluster role?

It is also something mentioned here https://www.microsoft.com/en-us/security/blog/2020/04/02/attack-matrix-kubernetes/

christophetd commented 1 year ago

Would that be a situation where:

christophetd commented 8 months ago

closing for inactivity but feel free to reopen

loresuso commented 8 months ago

Hi @christophetd, sorry about the inactivity! I will reopen it once I will have more bandwidth for this, thanks!