Aggregator
Ingress NGINX RCE Vulnerability Allows Attackers to Compromise Entire Cluster
A series of remote code execution (RCE) vulnerabilities known as “IngressNightmare” have been discovered in the Ingress NGINX Controller for Kubernetes. These vulnerabilities, identified as CVE-2025-1097, CVE-2025-1098, CVE-2025-24514, and CVE-2025-1974, pose a critical threat to Kubernetes clusters, allowing attackers to gain unauthorized access to all cluster secrets and potentially take control of the entire cluster. CVE-2025-24514: auth-url Annotation Injection […]
The post Ingress NGINX RCE Vulnerability Allows Attackers to Compromise Entire Cluster appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Cybersecurity jobs available right now: March 25, 2025
Analyst – Cyber Threat Intelligence Adecco | UAE | On-site – View job details As an Analyst – Cyber Threat Intelligence, you will conduct threat hunting missions across multi-cloud environments and perform cyber forensics to analyze security incidents. You will also engage in offensive security assessments, participate in red teaming, and support incident response efforts to mitigate breaches. Application and Product Security Senior Analyst (Penetration Testing) Vertiv | USA | On-site – View job details … More →
The post Cybersecurity jobs available right now: March 25, 2025 appeared first on Help Net Security.