Skip to content
← LibraryTechnique entry
K-PRIV-CONTAINERPrivilege Escalation

Privileged Container Escape

spec.containers[].securityContext.privileged: true — mount the host filesystem and chroot in.

§ Where this technique fits

K-PRIV-CONTAINER is catalogued under the Privilege Escalation tactic of the offensive-security kill-chain. It appears in 4 approved dossiers in the registry, typically at step 3.8 on average.

§ Dossiers chaining this technique

§ What commonly comes next

  1. 01
    hostPath Volume Mount
    K-HOSTPATH-MOUNT · Privilege Escalation
    seen 4×