4ARMED / kubeletmein
Security testing tool for Kubernetes, abusing kubelet credentials on public cloud providers.
☆160Updated last year
Related projects ⓘ
Alternatives and complementary repositories for kubeletmein
- a tool to audit the istio service mesh☆173Updated 3 years ago
- ☆91Updated 6 months ago
- Kubernetes focused container assessment and context discovery tool for penetration testing☆438Updated 5 months ago
- ☆233Updated 2 months ago
- A security monitoring solution for Kubernetes☆131Updated last year
- Evaluate the RBAC permissions of Kubernetes identities through policies written in Rego☆338Updated 11 months ago
- Kubernetes Easter CTF☆58Updated 4 years ago
- Tool for auditing RBACs in Kubernetes☆215Updated 9 months ago
- Links and resources for the O'Reilly Kubernetes Security book☆98Updated 3 years ago
- Dynamic Application and API Security Testing☆190Updated last year
- Automated GKE Kubelet Impersonation and Cluster Secret Stealer via kube-env☆102Updated 5 years ago
- Runtime security plug to protect user containers☆65Updated 2 weeks ago
- A POC for DNS spoofing in kubernetes clusters. Runs with minimum capabilities, on default installations of kuberentes.☆74Updated 5 years ago
- Research on various techniques to bypass default falco ruleset (based on falco v0.28.1).☆80Updated 9 months ago
- Kubernetes Pwnage for all☆54Updated 4 years ago
- Container Blackbox Security Auditing Tool: enumerates security configuration from within the target container☆102Updated 5 years ago
- ☆48Updated 5 years ago
- ☆27Updated last week
- ☆24Updated 6 months ago
- A deliberately vulnerable Kubernetes cluster☆118Updated 11 months ago
- Kubernetes audit logging, when you don't control the control plane☆65Updated this week
- Cloud Native Security Hub - Security Resources☆54Updated 4 years ago
- Discover vulnerabilities and container image misconfiguration in production environments.☆53Updated 2 months ago
- Kubernetes Common Configuration Scoring System☆124Updated 2 years ago
- Supporting code and demos for KubeCon EU 2023 talk "Malicious Compliance: Reflections on Trusting Container Image Scanners"☆66Updated 11 months ago
- ☆125Updated 4 months ago
- NamespaceHound is the tool for detecting the risk of potential namespace crossing violations in multi-tenant clusters.☆59Updated 8 months ago