THREATOPS
THREAT OPSThreat News › The Machine With Many Faces: Post-Exploitation Identity Misuse in SPIFFE/SPIRE

The Machine With Many Faces: Post-Exploitation Identity Misuse in SPIFFE/SPIRE

lowunit42Published 2026-09-10

<p>Learn how root access on a compromised K8s node allows attackers to utilize SPIFFE/SPIRE metadata to spoof and harvest co-located workload identities.</p> <p>The post <a href="https://unit42.paloaltonetworks.com/kubernetes-spiffe-spire-identity-spoofing/">The Machine With Many Faces: Post-Exploitation Identity Misuse in SPIFFE/SPIRE</a> appeared first on <a href="https://unit42.paloaltonetworks

Original source: https://unit42.paloaltonetworks.com/kubernetes-spiffe-spire-identity-spoofing/