Logo
Unit42 Logo
  • Tools
  • ATOMs
  • Security Consulting
  • About Us
  • Under Attack?

Posts tagged with: containers

Detecting Popular Cobalt Strike Malleable C2 Profile TechniquesA pictorial representation of Cobalt Strike case studies using Malleable C2 profiles. The Palo Alto Networks and Unit 42 logos.
17,610
people reacted

Detecting Popular Cobalt Strike Malleable C2 Profile Techniques

  • By Durgesh Sangvikar, Matthew Tennis, Chris Navarrete, Yanhui Jia, Yu Fu and Nina Smith
  • June 27, 2023 at 3:00 PM

18

6 min. read

CryptoClippy Speaks PortugueseA pictorial representation of cryptojacking like CryptoClippy, where illustrated figures use pickaxes to dig out Bitcoin
74,854
people reacted

CryptoClippy Speaks Portuguese

  • By Veronika Senderovych, Amer Elsad and Anthony Galiette
  • April 5, 2023 at 3:00 AM

19

18 min. read

Trending

  • Threat Group Assessment: Muddled Libra (Updated) by Unit 42
  • Unit 42 Attack Surface Threat Research: Constant Change in Cloud Contributes to 45% of New High/Critical Exposures Per Month by Unit 42
  • Wireshark Tutorial: Display Filter Expressions by Brad Duncan
  • Fake CVE-2023-40477 Proof of Concept Leads to VenomRAT by Robert Falcone
  • Unit 42 Researchers Discover Multiple Espionage Operations Targeting Southeast Asian Government by Robert Falcone
Mitigating RBAC-Based Privilege Escalation in Popular Kubernetes PlatformsA pictorial representation of RBAC-based privilege escalation. Illustrated figures pilot a boat carrying the image of an anchor on a green shield.
66,258
people reacted

Mitigating RBAC-Based Privilege Escalation in Popular Kubernetes Platforms

  • By Yuval Avrahami
  • January 27, 2023 at 6:00 AM

29

9 min. read

PurpleUrchin Bypasses CAPTCHA and Steals Cloud Platform ResourcesA pictorial representation of PurpleUrchin and cryptomining. Included are the Palo Alto Networks and Unit 42 logos.
60,190
people reacted

PurpleUrchin Bypasses CAPTCHA and Steals Cloud Platform Resources

  • By William Gamazo and Nathaniel Quist
  • January 5, 2023 at 6:00 AM

13

10 min. read

Digging Inside Azure Functions: HyperV Is the Last Line of DefenseA pictorial representation of many storage containers stacked together
52,305
people reacted

Digging Inside Azure Functions: HyperV Is the Last Line of Defense

  • By Daniel Prizmant and Aviv Sasson
  • December 15, 2022 at 6:00 AM

9

10 min. read

Unit 42 Finds Three Vulnerabilities in OpenLiteSpeed Web ServerCloud vulnerabilities conceptual image, covering topics such as OpenLiteSpeed vulnerabilities
61,859
people reacted

Unit 42 Finds Three Vulnerabilities in OpenLiteSpeed Web Server

  • By Artur Avetisyan
  • November 10, 2022 at 6:00 AM

9

5 min. read

FabricScape: Escaping Service Fabric and Taking Over the ClusterA conceptual image representing container security, including FabricScape, the container escape vulnerability discussed here.
62,191
people reacted

FabricScape: Escaping Service Fabric and Taking Over the Cluster

  • By Aviv Sasson
  • June 28, 2022 at 4:30 PM

38

10 min. read

AWS's Log4Shell Hot Patch Vulnerable to Container Escape and Privilege EscalationA conceptual image representing a vulnerability in the AWS Log4Shell hot patch. It shows a java symbol inside a container with one door open.
77,224
people reacted

AWS's Log4Shell Hot Patch Vulnerable to Container Escape and Privilege Escalation

  • By Yuval Avrahami
  • April 19, 2022 at 3:00 PM

71

7 min. read

Gaining Visibility Within Container ClustersA conceptual image representing containers, including the K8s clusters discussed here.
32,573
people reacted

Gaining Visibility Within Container Clusters

  • By Nathaniel Quist
  • April 15, 2022 at 6:00 AM

28

10 min. read

Container Escape to Shadow Admin: GKE Autopilot VulnerabilitiesA conceptual image representing Kubernetes security, including the GKE Autopilot vulnerabilities discussed here, which, before fixed, could have allowed for container escape leading to a shadow administrator.
62,748
people reacted

Container Escape to Shadow Admin: GKE Autopilot Vulnerabilities

  • By Yuval Avrahami
  • March 8, 2022 at 6:00 AM

58

14 min. read

New Linux Vulnerability CVE-2022-0492 Affecting Cgroups: Can Containers Escape?A conceptual image representing container security issues, such as CVE-2022-0492, the Linux vulnerability discussed here.
97,939
people reacted

New Linux Vulnerability CVE-2022-0492 Affecting Cgroups: Can Containers Escape?

  • By Yuval Avrahami
  • March 3, 2022 at 10:00 AM

55

9 min. read

Finding Azurescape – Cross-Account Container Takeover in Azure Container InstancesA conceptual image illustrating vulnerabilities related to containers and Kubernetes, such as Azurescape, the cross-account container takeover in Azure Container Instances discussed here.
104,557
people reacted

Finding Azurescape – Cross-Account Container Takeover in Azure Container Instances

  • By Yuval Avrahami
  • September 9, 2021 at 3:00 AM

113

14 min. read

Siloscape: First Known Malware Targeting Windows Containers to Compromise Cloud EnvironmentsA conceptual image representing Siloscape, the first known malware targeting Windows containers.
87,129
people reacted

Siloscape: First Known Malware Targeting Windows Containers to Compromise Cloud Environments

  • By Daniel Prizmant
  • June 7, 2021 at 3:00 AM

74

11 min. read

Unsecured Kubernetes Instances Could Be Vulnerable to ExploitationA conceptual image representing Kubernetes topics, including the unsecured Kubernetes instances discussed here.
44,947
people reacted

Unsecured Kubernetes Instances Could Be Vulnerable to Exploitation

  • By Jay Chen, Aviv Sasson and Ariel Zelivansky
  • April 23, 2021 at 5:40 PM

24

11 min. read

New Vulnerability Affecting Container Engines CRI-O and Podman (CVE-2021-20291)A conceptual image representing container security, such as that affected by CVE-2021-20291, discussed in this post
42,334
people reacted

New Vulnerability Affecting Container Engines CRI-O and Podman (CVE-2021-20291)

  • By Aviv Sasson
  • April 14, 2021 at 6:00 AM

23

4 min. read

Popular Resources

  • Resource Center
  • Blog
  • Communities
  • Tech Docs
  • Unit 42
  • Sitemap

Legal Notices

  • Privacy
  • Terms of Use
  • Documents

Account

  • Manage Subscriptions
  •  
  • Report a Vulnerability

© 2023 Palo Alto Networks, Inc. All rights reserved.