{"id":24684,"date":"2022-06-29T10:46:10","date_gmt":"2022-06-29T14:46:10","guid":{"rendered":"https:\/\/www.technewsday.com\/?p=24684"},"modified":"2022-06-29T10:46:10","modified_gmt":"2022-06-29T14:46:10","slug":"over-900000-kubernetes-found-exposed-on-the-internet","status":"publish","type":"post","link":"https:\/\/technewsday.com\/staging\/over-900000-kubernetes-found-exposed-on-the-internet\/","title":{"rendered":"Over 900,000 Kubernetes Found Exposed On The Internet"},"content":{"rendered":"<p id=\"arIndex_1\" data-ar-index=\"1\">Cyble researchers have uncovered a massive 900,000 badly configured Kubernetes servers that are vulnerable on the internet. 65% (585,000) of these servers are located in the United States, 14% in China, 9% in Germany and 6% each in the Netherlands and Ireland.<\/p>\n<p id=\"arIndex_2\" data-ar-index=\"2\">Among the exposed servers, the most exposed TCP ports were &#8220;443&#8221; with just over a million instances, &#8220;10250&#8221; with 231, 200, and &#8220;6443&#8221; with 84,400 results.<\/p>\n<p id=\"arIndex_3\" data-ar-index=\"3\">The researchers clarified that not all the exposed servers can be exploited by attackers. The risk varies depending on the individual configuration.<\/p>\n<p id=\"arIndex_4\" data-ar-index=\"4\">The researchers evaluate the error codes returned to the Kubelet API for the unauthenticated requests to assess how many of the exposed instances may be at significant risk.<\/p>\n<p id=\"arIndex_5\" data-ar-index=\"5\">Most of exposed server instances return the error code 403, which means that the unauthenticated request is forbidden and cannot be traversed, so attacks against it cannot occur.<\/p>\n<p id=\"arIndex_6\" data-ar-index=\"6\">&#8220;The stats provided in the Kubernetes blog that is published from our end is on the basis of Open-source scanners and the Queries available for the product. As mentioned in the blog, we have searched on the basis of queries \u201cKubernetes,&#8221; &#8220;Kubernetes-master,&#8221; &#8220;KubernetesDashboard,&#8221; &#8220;K8&#8243; and favicon hashes along with status codes 200,403 &amp; 401,&#8221; Cyble explained.<\/p>\n<p id=\"arIndex_7\" data-ar-index=\"7\">The sources for this piece include an article in <a href=\"https:\/\/www.bleepingcomputer.com\/news\/security\/over-900-000-kubernetes-instances-found-exposed-online\/\" target=\"_blank\" rel=\"noopener\">BleepingComputer<\/a>.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Cyble researchers have uncovered a massive 900,000 badly configured Kubernetes servers that are vulnerable on the internet. 65% (585,000) of these servers are located in the United States, 14% in China, 9% in Germany and 6% each in the Netherlands and Ireland. Among the exposed servers, the most exposed TCP ports were &#8220;443&#8221; with just [&hellip;]<\/p>\n","protected":false},"author":4,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[34,16,9],"tags":[388,393],"class_list":["post-24684","post","type-post","status-publish","format-standard","hentry","category-artificial-intelligence","category-security","category-todays-news","tag-privacy-security","tag-security-strategies"],"acf":[],"_links":{"self":[{"href":"https:\/\/technewsday.com\/staging\/wp-json\/wp\/v2\/posts\/24684","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/technewsday.com\/staging\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/technewsday.com\/staging\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/technewsday.com\/staging\/wp-json\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"https:\/\/technewsday.com\/staging\/wp-json\/wp\/v2\/comments?post=24684"}],"version-history":[{"count":2,"href":"https:\/\/technewsday.com\/staging\/wp-json\/wp\/v2\/posts\/24684\/revisions"}],"predecessor-version":[{"id":24686,"href":"https:\/\/technewsday.com\/staging\/wp-json\/wp\/v2\/posts\/24684\/revisions\/24686"}],"wp:attachment":[{"href":"https:\/\/technewsday.com\/staging\/wp-json\/wp\/v2\/media?parent=24684"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/technewsday.com\/staging\/wp-json\/wp\/v2\/categories?post=24684"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/technewsday.com\/staging\/wp-json\/wp\/v2\/tags?post=24684"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}