Default Writable Filesystem
Kubernetes containers run with fully writable root filesystems by default when no securityContext is configured. This insecure default allows attackers who compromise applications to persist malicious code, modify system binaries, and tamper with evidence.