Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

K8s pwn #4

Open
petterroea opened this issue Sep 12, 2023 · 0 comments
Open

K8s pwn #4

petterroea opened this issue Sep 12, 2023 · 0 comments

Comments

@petterroea
Copy link

To pods i to forskjellige namespaces:

  • en filserverings-pod med mangel på validering av paths, som lar deg hente ut credentials til service accounten til poden
  • En pod som hjelper deg med å validere flagget, som har flagget som en secret

Målet er å forstå at man kan, med en feilkonfigurert service account, enumerere secrets i andre namespaces og hente de ut.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant