Overview

FieldValue
ID1064
NameManage Cilium ClusterwideNetworkPolicies (cilium.io)
Risk CategoryNetworkManipulation
Risk LevelCritical
Role TypeClusterRole
API Groupscilium.io
Resourcesciliumclusterwidenetworkpolicies
Verbscreate, update, patch, delete
TagsDenialOfService NetworkManipulation NetworkPolicyManagement Tampering

Description

Permits managing CiliumClusterwideNetworkPolicies, which control network traffic flow across the entire cluster when using Cilium CNI. An attacker can modify these policies to bypass network segmentation, eavesdrop on traffic, or cause denial of service by isolating critical components.