logo

Lateral movement risks in the cloud and how to prevent them – Part 2: from compromised container to cloud takeover

ID: 39c709ce-6e65-5581-b3f1-79cb2a621be7

STIX ID: report--39c709ce-6e65-5581-b3f1-79cb2a621be7

Feed Name: Wiz Blog

Date Published: 2023-01-05

Date Updated: 2026-05-01

...
...

The report analyzes Kubernetes-to-cloud lateral movement techniques across EKS, GKE, and AKS—covering IMDS abuse, pod-assigned IAM/AAD identities, long-term cloud keys, and pod escape—contrasts default provider permissions and configurations, cites prevalence of risky practices, and recommends six mitigations (e.g., blocking IMDS access, adopting Pod Security Admission, enforcing strict RBAC, avoiding long-term keys, remediating exposed container vulnerabilities, and applying network policies) to minimize cloud blast radius.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.