One Kubernetes YAML can abuse Config Connector when org-level IAM is too broad, letting a low-privilege K8s user escalate to Google Cloud org control through the ConfigConfusion confused deputy flaw. #ConfigConnector #KCC #ConfigConfusion

One Kubernetes YAML can abuse Config Connector when org-level IAM is too broad, letting a low-privilege K8s user escalate to Google Cloud org control through the ConfigConfusion confused deputy flaw. #ConfigConnector #KCC #ConfigConfusion