← Back to feed
Vulnerabilities & PatchesEmerging1 sourceMay 25, 2022 · 17:29via API Security News

Issue 186: Kubernetes API servers exposed, vulnerability in Swagger-UI library, Google views on API economy

Brief

This week, we have news of a report revealing that over 380 000 Kubernetes API servers are exposed on the internet due to possible misconfiguration, as well as details of a vulnerability allowing DOM XSS attacks in the popular Swagger-UI library. We also feature views from Google on the future of the API economy and conclude with a beginner’s guide to API keys usage and best practices.

Report: 380,000 Kubernetes API servers exposed on the internet

A report from internet security research firm ShadowServer reveals that as many as 380 000 Kubernetes API servers are exposed to the public internet . The researchers at ShadowServer scanned IP addresses by performing a GET request at the URI /version and recorded instances that returned a HTTP 200 status code.

Read more on API Security News