Alevsk / dvka
Damn Vulnerable Kubernetes App (DVKA) is a series of apps deployed on Kubernetes that are damn vulnerable.
â121Updated last week
Alternatives and similar repositories for dvka:
Users that are interested in dvka are comparing it to the libraries listed below
- 𧰠Multi Tool Kubernetes Pentest Imageâ225Updated 6 months ago
- â43Updated 3 years ago
- Research on various techniques to bypass default falco ruleset (based on falco v0.28.1).â80Updated last year
- â93Updated 3 weeks ago
- â175Updated 3 months ago
- NamespaceHound is the tool for detecting the risk of potential namespace crossing violations in multi-tenant clusters.â79Updated 2 months ago
- A deliberately vulnerable Kubernetes clusterâ123Updated last year
- kubernetes-for-soc aims to fast-track the learning curve for SOC analysts by enabling them to swiftly grasp the essential concepts and knâŚâ51Updated last year
- Curating Falco rules with MITRE ATT&CK Matrixâ77Updated 11 months ago
- OWASP Kubernetes security and compliance tool [WIP]â105Updated last year
- â66Updated last month
- Kubernetes focused container assessment and context discovery tool for penetration testingâ450Updated 8 months ago
- Ansible/Vagrant/Packer files to create a virtual machine with the tooling needed to perform cloud security assessmentsâ138Updated 2 months ago
- A full insecure kubernetes application for testing security toolsâ68Updated this week
- KubeStalk discovers Kubernetes and related infrastructure based attack surface from a black-box perspective.â171Updated last month
- â21Updated 3 months ago
- Tool for auditing RBACs in Kubernetesâ215Updated last year
- â237Updated 5 months ago
- Supporting code and demos for KubeCon EU 2023 talk "Malicious Compliance: Reflections on Trusting Container Image Scanners"â67Updated last year
- A curated list of resources about detecting threats and defending Kubernetes systems.â374Updated last year
- truffleproc â hunt secrets in process memory (TruffleHog & gdb mashup)â114Updated last year
- AWACS for RBAC. Tool for auditing CRUD permissions in Kubernetes' RBAC.â46Updated 9 months ago
- Process documentation, non-code deliverables, and miscellaneous artifacts of Kubernetes SIG Securityâ191Updated 3 weeks ago
- Security testing tool for Kubernetes, abusing kubelet credentials on public cloud providers.â162Updated last year
- An AWS IAM policy statement parser and query tool.â173Updated last year
- Test & Compare different Kubernetes security offerings on EKS, GKE and AKSâ38Updated 6 months ago
- Nextdoor's Cloud Security Posture Management (CSPM) Evaluation Matrixâ58Updated last year
- Tooling to simulate runtime attacks and test default runtime detections from Datadog Cloud Security Management.â30Updated 4 months ago
- This terraform provider can be used to get remote code execution by injecting a dummy resource in a writeable state file.â52Updated last month
- Response Engine for managing threats in your Kubernetesâ149Updated this week