By default, Kubernetes containers run as root (UID 0). If compromised, this increases the risk of privilege escalation to the host
Our new article explains how SecurityContext actually works - from kernel primitives to practical hardening
https://learnkube.com/security-contexts