This document describes a threat finding type in Security Command Center. Threat findings are generated by threat detectors when they detect a potential threat in your cloud resources. For a full list of available threat findings, see Threat findings index.
Finding description
Someone deployed a workload (for example, a Pod or Deployment) in
the kube-system
or kube-public
namespaces. These namespaces are critical
for GKE cluster operations, and unauthorized workloads could compromise
cluster stability or security.
- Identify the deployed workload and its purpose.
- If the workload is unauthorized, delete it and investigate the source of deployment.
What's next
- Learn how to work with threat findings in Security Command Center.
- Refer to the Threat findings index.
- Learn how to review a finding through the Google Cloud console.
- Learn about the services that generate threat findings.