Analytics Story: Kubernetes Sensitive Role Activity

This story addresses detection and response around Sensitive Role usage within a Kubernetes clusters against cluster resources and namespaces.

Kubernetes is the most used container orchestration platform, this orchestration platform contains sensitive roles within its architecture, specifically configmaps and secrets, if accessed by an attacker can lead to further compromise. These searches allow operator to detect suspicious requests against Kubernetes role activities

Name ▲▼ Platform ▲▼ Sourcetype ▲▼ Source ▲▼

Source: GitHub | Version: 1