pyn3rd
@pyn3rd
Security Researcher&Red Team&Cloud Security. BlackHat&HITB&CanSecWest Speaker.
ID: 700586855947829248
https://blog.pyn3rd.com 19-02-2016 07:44:57
822 Tweet
13,13K Followers
561 Following
I truly appreciate James Kettle's kind help in adding both my blog and slides to Web Hacking Techniques 2024.Thank you so much!
We (+sagitz Ronen Shustin Hillai Ben-Sasson) found a series of unauthenticated RCEs in core @KubernetesIO project "Ingress-NGINX". The impact? From zero permissions ➡️ to complete cluster takeover 🤯 This is the story of #IngressNightmare 🧵⬇️