cognitive cybersecurity intelligence

News and Analysis

Search

Ingress-nginx vulnerabilities can lead to Kubernetes cluster takeover

Wiz researchers have discovered critical vulnerabilities, collectively known as “IngressNightmare”, in Ingress NGINX Controller for Kubernetes feature that could allow attackers to take over Kubernetes clusters. Approximately 43% of cloud environments could be vulnerable to these vulnerabilities, and this risk extends to over 6,500 clusters, including Fortune 500 companies. The Ingress-nginx team has patched the vulnerabilities in certain versions of the controller. Amazon Elastic Kubernetes Service is not affected, but users who have installed Ingress-nginx on their clusters should update to the latest version.

Source: www.helpnetsecurity.com –

Subscribe to newsletter

Subscribe to HEAL Security Dispatch for the latest healthcare cybersecurity news and analysis.

More Posts