background graphic

Sysdig Site Search

Showing 10 of 157

Detecting exploits of CVE-2019-5736: runc container breakout.

Blog

Earlier today, CVE-2019-5736 was announced regarding a runC container breakout. Given the high CVSS rating of 7.2, it is imperative...

CVE-2018-18264 Privilege escalation through Kubernetes dashboard

Blog

A recently disclosed vulnerability in Kubernetes dashboard (CVE-2018-18264) exposes secrets to unauthenticated users. In this blog post we’ll explore some...

How to detect Kubernetes vulnerability CVE-2019-11246 using Falco

Blog

A recent CNCF-sponsored Kubernetes security audit uncovered CVE-2019-11246, a high-severity vulnerability affecting the command-line kubectl tool. If exploited, it could...

5 Steps to Stop the Latest OpenSSL Vulnerabilities: CVE-2022-3602, CVE-2022-3786

Blog

The OpenSSL Project team announced two HIGH severity vulnerabilities (CVE-2022-3602, CVE-2022-3786) on Oct. 25, which affect all OpenSSL v3 versions...

CVE-2024-6387 – Shields Up Against RegreSSHion

Blog

On July 1st, the Qualys’s security team announced CVE-2024-6387, a remotely exploitable vulnerability in the OpenSSH server. This critical vulnerability...

Detecting and mitigating CVE-2024-12084: rsync remote code execution

Blog

On Tuesday, January 14, 2025, a set of vulnerabilities were announced that affect the “rsync” utility. rsync allows files and...

Threat Research

page

RunC is the underlying container runtime beneath infrastructures such as Docker, cri-o, containerd, Kubernetes and others. Read the post to learn more.

Detecting CVE-2020-14386 with Falco and mitigating potential container escapes

Blog

On Sept. 14, CVE-2020-14386 was reported as a “high” severity threat. This CVE is a kernel security vulnerability that enables...

Critical Vulnerability in Spring Core: CVE-2022-22965 a.k.a. Spring4Shell

Blog

After the Spring cloud vulnerability reported yesterday, a new vulnerability called Spring4shell CVE-2022-22965 was reported on the very popular Java...

Mitigating CVE-2022-0811: Arbitrary code execution affecting CRI-O

Blog

A new vulnerability CVE-2022-0811, alias cr8escape, with CVSS 8.8 (HIGH) has been found in the CRI-O container engine by Crowdstrike....

1 2 3 16

Stay up to date! Sign up to receive our newsletter.