Key takeaways from the Wiz 2023 Kubernetes Security Report
ID: e404b808-19c3-51c1-aea1-e26928f5c123
STIX ID: report--e404b808-19c3-51c1-aea1-e26928f5c123
Feed Name: Wiz Blog
The 2023 Kubernetes Security Report analyzes scans from over 200,000 cloud accounts and finds that new K8s clusters attract malicious internet scans within hours (as fast as 22 minutes on EKS), while container security maturity remains low (only 9% use network policies), enabling lateral movement, privilege escalation, and cloud pivoting; attackers increasingly run cryptominers (e.g., XMRig, CCMiner) on K8s and expand beyond mining to IP theft, so the report recommends a “Zone Defense” approach: continuous external exposure scanning, targeted vulnerability remediation and cluster updates, runtime threat detection, strong in-cluster isolation (Pod Security Standards, sensible RBAC, network policies, user namespaces), and ongoing IAM/RBAC hygiene to limit impact.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
