Amazon EKS Flaws Let Hackers Steal AWS Credentials
Critical vulnerabilities in Amazon Elastic Kubernetes Service (EKS) allow overprivileged containers to steal AWS credentials through packet sniffing and spoofing attacks. Amazon EKS flaws let attackers exploit the 169.254.170.23:80 endpoint by intercepting plaintext traffic or deploying fake HTTP servers. These exposures, disclosed on June 19, 2025, underscore the risks in AWS’s shared responsibility model. The […]
