Feb. 1, 2024, 4:15 p.m. | MalBot

Malware Analysis, News and Indicators - Latest topics malware.news


Summary


On January 31st 2024, Snyk announced the discovery of four vulnerabilities in Kubernetes and Docker. 



For Kubernetes, the vulnerabilities are specific to the runc CRI. Successful exploitation allows an attacker to escape the container and gain access to the host operating system. To exploit these vulnerabilities, an attacker will need to control the Dockerfile when …

attacker cri critical cve cvss discovery docker exploitation high january kubernetes runc snyk vulnerabilities

Security Analyst

@ Northwestern Memorial Healthcare | Chicago, IL, United States

GRC Analyst

@ Richemont | Shelton, CT, US

Security Specialist

@ Peraton | Government Site, MD, United States

Information Assurance Security Specialist (IASS)

@ OBXtek Inc. | United States

Cyber Security Technology Analyst

@ Airbus | Bengaluru (Airbus)

Vice President, Cyber Operations Engineer

@ BlackRock | LO9-London - Drapers Gardens