New Plug-in for Detecting Publicly Accessible Vulnerability in etcd
Feb 11 2019
Content
Target customers: etcd users. Features released: etcd is a highly available key-value storage system and is used for shared configurations and service discovery. etcd is a crucial component for Kubernetes. If you have the read and write permissions on the etcd service in a Kubernetes cluster, a publicly accessible vulnerability in etcd may cause the disclosure of the cluster secret or privilege escalation. We recommend that etcd users perform security checks at the earliest opportunity.