A new malware program is designed to escape from Windows Server Containers and infect Kubernetes clusters. It uses a little-known Windows container escape technique and uses Tor for command-and-control communication. Malware attacks against cloud containers are nothing new, but these attacks have primarily focused on Linux deployments. The Siloscape malware can only escape from silo containers and not Hyper-V containers, according to researchers from Palo Alto Networks. The malware is heavily obfuscated, uses a technique called Thread Impersonation.”]

