GeekLinks · @geeklinks
1 followers · 25 posts · Server social.exo.icu

👮 Learn how to easily find a fitting Azure RBAC role for your task and following the Least Privilege Principle in this post.

christoph.vollmann.co/2023/07/

#azure #rbac #cloudsecurity

Last updated 1 year ago

Redhotcyber · @redhotcyber
506 followers · 1247 posts · Server mastodon.bida.im

C’è competizione nel cybercrime per l’acquisizione dei cluster Kubernetes per minare criprovaluta

Gli della società di Aqua hanno scoperto una campagna su larga scala in cui gli aggressori utilizzano la policy Role Based Access Control () per creare delle ed eseguire di .

Gli aggressori hanno anche distribuito DaemonSet per rubare risorse dai cluster Kubernetes presi di mira, affermano gli . Sono stati trovati 60 cluster non protetti utilizzati dagli hacker.

redhotcyber.com/post/ce-compet

#specialisti #sicurezza #kubernetes #rbac #backdoor #miner #criptovaluta #esperti #redhotcyber #informationsecurity #ethicalhacking #dataprotection #hacking #cybersecurity #cybercrime #CyberSecurityAwareness #cybersecuritytraining #CyberSecurityNews #privacy #infosecurity

Last updated 1 year ago

Torben Volkmann · @_Torben_
27 followers · 430 posts · Server det.social

Is there a better way in to implement and not to use ? I stumble on more an more examples where nested groups are not supported (e.g. licenses and OAuth)

#AzureAD #rbac #adglp #microsoft #infosec #o365 #azure

Last updated 1 year ago

Dentaku (Thomas Renger) · @dentaku
866 followers · 12269 posts · Server fnordon.de

Einfach ein ClusterRoleBinding mit cluster-admin-Rolle anlegen ist das "mach doch einfach chmod 777" der Kubernetes-Tutorials.

#k8s #rbac #admin

Last updated 1 year ago

rmoff 🏃🏻 🍺 🥓 · @rmoff
1104 followers · 697 posts · Server data-folks.masto.host

✍️ As blog subjects go, security is not always an exciting one 😴. But I enjoyed writing this for the excuse that it gave me to see how **** worked for different types of users (and of course play around with **** some more 🦆)

Check it out and let me know what you think: 👇🏻

lakefs.io/blog/security-in-lak

**** **** **** **** ****

#lakefs #duckdb #dataengineering #rbac #security

Last updated 1 year ago

Joe Shenouda · @shenouda
117 followers · 112 posts · Server cybersecurity.masto.host

Lost in the Kubernetes RBAC maze? 🤔 An RBAC visualizer can light the way! 🌟 Gain clarity on user privileges, declutter roles, and boost your cluster's security game! 🔐 cybersec.armosec.io/s/visualiz

#kubernetes #rbac #securitymanagement

Last updated 1 year ago

bertrand 🏃 👨‍💻 · @bertrand
162 followers · 897 posts · Server piaille.fr

@jrefior RBAC is easier for most organisations yet there's quickly the risk of role combinatorial explosion and then it falls short.

ABAC is interesting when data quality is *really* understood as a key prerequisite and actually correctly measured and enforced.

#rbac #abac

Last updated 2 years ago

André Koot 🐧 · @meneer
757 followers · 1161 posts · Server mastodon.myfed.space

Today we posted a blog about and / . There are some challenges in managing authorizations in non-hierarchical environments. We are working on solving some of these issues, but we're not done yet. Anyway, enjoy the read!

sonicbee.nl/en/working-holocra

#holacracy #IAM #rbac #IDPro #digitalidentity #infosec

Last updated 2 years ago

André Koot 🐧 · @meneer
757 followers · 1161 posts · Server mastodon.myfed.space

Today we posted a blog about and / . There are some challenges in managing authorizations in non-hierarchical environments. We are working on solving some of these issues, but we're not done yet. Anyway, enjoy the read!

sonicbee.nl/en/working-holocra

#holacracy #IAM #rbac #IDPro #digitalidentity

Last updated 2 years ago

CK's Technology News · @CKsTechNews
1824 followers · 3281 posts · Server cktn.todon.de

Mitigating -Based Privilege Escalation in Popular Platforms

Via
unit42.paloaltonetworks.com/ku

#rbac #kubernetes

Last updated 2 years ago

Lukas Beran · @lukasberancz
3 followers · 4 posts · Server infosec.exchange

With the new model you can unify permissions across all Microsoft 365 Defenders - Defender for Office 35, Defender for Identity, and Defender for Endpoint to help the Security Operations Center (SOC) increase productivity across the various Microsoft Defender products. While Defender for Cloud Apps is not covered in this initial preview, it will be added to the new RBAC model in the future.

And, of course, it works along the existing RBAC for individual services. techcommunity.microsoft.com/t5

#microsoft365 #defender #rbac #microsoft #security #cloud #securitynews

Last updated 2 years ago

damienbod · @damienbod
238 followers · 42 posts · Server mastodon.social
TSM at Work · @tsmatwork
9 followers · 40 posts · Server noc.social

past and present confirmed the solution to my woes. Got it implemented, got the installed in the cluster, and got that first line-of-business deployed via its pipeline, without any modifications from developers.

Tomorrow we try to get the other 80+ workloads deployed into that cluster. Automator gonna .

But for now, there is . Tasty, comforting soup on a chilly day.

#soup #automate #workload #kubernetes #operator #racecondition #rbac #teammates

Last updated 2 years ago

TSM at Work · @tsmatwork
9 followers · 39 posts · Server noc.social

You know something is when the you installed in the cluster to make easier is in a against fairly ordinary stacks that manage service accounts in namespaces where business workloads will actually run. Because arbitrarily changing service account tokens is exactly what I want to on my first day back from a long break. 🙃 It’s important work for the cluster, but it doesn’t feel like progress.

#debug #kustomize #racecondition #rbac #kubernetes #operator #hinky

Last updated 2 years ago

André Koot 🐧 · @meneer
721 followers · 997 posts · Server mastodon.myfed.space

I wrote an article for the Body of Knowledge about the concept of Business to IT alignment. In my opinion failing alignment is the root cause for the lack of success for most IAM programs. Direct access to the article on the SonicBee website:
sonicbee.nl/en/strategic-align

Direct access to the IDPro BoK: idpro.org/body-of-knowledge/

And to become member of the community: idpro.org/membership-overview/

#IDPro #infosec #rbac #governance

Last updated 2 years ago

TSM at Work · @tsmatwork
6 followers · 20 posts · Server noc.social

Or I could just ask the a simple question, get a brief answer that amounts to “not yet,” and that whole mess to get what I want. Which required a detour through appeasement and a battle with extra special . But at least I have a that sums it all up.

#pullrequest #rbac #scheduler #kubernetes #workaround #vendor

Last updated 2 years ago

Tim Stoop · @timstoop
40 followers · 257 posts · Server fosstodon.org

Ugh, clusterroles with just give blanket permissions to all resources in all namespaces are the new blinkinlights permissions 😠 So many upstream devs just take the easy road and take all permissions even when their app does not need it.

#kubernetes #rbac #rbacishard

Last updated 2 years ago

Unni P · @iamunnip
4 followers · 23 posts · Server cloud-native.social
Fabian Bader · @fabian_bader
635 followers · 144 posts · Server infosec.exchange

Public Preview of Role Based Access Control for Applications in Online

Limit graph permissions to a specific scope of users in your tenant.

techcommunity.microsoft.com/t5

#exchange #exo #rbac #graph

Last updated 2 years ago