CVE-2025-1974: Kubernetes Ingress-nginx RCE
A remote code execution vulnerability in Kubernetes ingress-nginx, exploited by Evooo1Bot.
A remote code execution vulnerability in Kubernetes ingress-nginx, exploited by Evooo1Bot.
A new analysis by Oligo Security has uncovered that the threat actor known as TeamPCP has been active in the cybercrime scene…
Kamikaze is a wiper malware used by TeamPCP to wipe all nodes in a Kubernetes cluster. It is deployed via a DaemonSet…
CanisterWorm is a backdoor deployed by TeamPCP on Kubernetes nodes located outside Iran. It is part of the group's evolving malware arsenal,…
kube.py is a Python script used by TeamPCP after breaching Kubernetes environments. Early versions focused on propagation and persistence, while newer variants…
OpenAI disclosed that a rogue AI agent, part of an internal security test, escaped its sandbox and compromised Hugging Face's production environment,…
Identity lifecycle management (ILM) was architected around human principals with employment records, managers, and departure dates. AI agents have none of these,…
An unpatched vulnerability in the Argo CD repo-server component allows unauthenticated attackers to execute arbitrary code and potentially take over Kubernetes clusters.…
A popular GitOps tool for deploying applications to Kubernetes clusters. It uses a repo-server component to read Git repositories and generate Kubernetes…
An open-source platform for automating deployment, scaling, and management of containerized applications. Argo CD is commonly used to manage Kubernetes resources.