Abstract
As the de-facto standard for container orchestration, Kubernetes is extensively adopted by numerous companies and cloud vendors, making its security critical. In this paper, we define a new attack surface called implicit permission: The execution of explicitly granted permissions in Kubernetes dynamically leads to implicit operations on other resources, enabling new permissions beyond the explicitly granted ones. Such implicit permissions create security vulnerabilities that attackers can exploit to compromise an entire cluster. Automatically identifying implicit permissions is challenging due to implicit relation reasoning and dynamic behaviors across diverse components of Kubernetes. To address that, we devise a systematic approach that combines static analysis techniques with the advanced capabilities of the large language model (LLM, e.g., GPT-4.5). Initially, we develop a static analysis to identify all Kubernetes resources. Building on this, we use static analysis to identify all explicit permissions for each resource. Finally, by combining the semantic reasoning capabilities of LLMs with the pattern-based precision of static analysis, we reason about what explicit permissions may dynamically lead to implicit permissions through complex interactions and uncover 593 implicit permissions derived from explicit permissions. We use the implicit permission references as insights to identify potential risks of CNCF projects and applications provided by the top four cloud vendors. With responsible disclosure, we obtain five new CVEs, six acknowledgments of cloud vendors, and a bounty awarded by Google. These acknowledgments underlie the practical impact of our attack.
| Original language | English (US) |
|---|---|
| Title of host publication | CCS 2025 - Proceedings of the 2025 ACM SIGSAC Conference on Computer and Communications Security |
| Publisher | Association for Computing Machinery, Inc |
| Pages | 3401-3415 |
| Number of pages | 15 |
| ISBN (Electronic) | 9798400715259 |
| DOIs | |
| State | Published - Nov 22 2025 |
| Event | 32nd ACM SIGSAC Conference on Computer and Communications Security, CCS 2025 - Taipei, Taiwan, Province of China Duration: Oct 13 2025 → Oct 17 2025 |
Publication series
| Name | CCS 2025 - Proceedings of the 2025 ACM SIGSAC Conference on Computer and Communications Security |
|---|
Conference
| Conference | 32nd ACM SIGSAC Conference on Computer and Communications Security, CCS 2025 |
|---|---|
| Country/Territory | Taiwan, Province of China |
| City | Taipei |
| Period | 10/13/25 → 10/17/25 |
Bibliographical note
Publisher Copyright:© 2025 Copyright held by the owner/author(s).
Keywords
- Access Control
- Implicit Permission
- Kubernetes
Fingerprint
Dive into the research topics of 'Dangers Behind Access Control: Understanding and Exploiting Implicit Permissions in Kubernetes'. Together they form a unique fingerprint.Cite this
- APA
- Standard
- Harvard
- Vancouver
- Author
- BIBTEX
- RIS