[SECURITY]■ STORY TIMELINE
KUBERNETES YAML FLAW COULD EXPOSE ENTIRE GCP ORG
A limited-permission Kubernetes user can potentially gain full control of a Google Cloud organization by exploiting the Google Kubernetes Config Connector. The vulnerability represents a classic confused deputy problem in cloud infrastructure.
Bleeping Computer+0m
A Kubernetes user with limited permissions can potentially gain control of an entire Google Cloud organization by exploi…