Tool for building Kubernetes attack paths
☆994Aug 31, 2026Updated this week
Alternatives and similar repositories for KubeHound
Users that are interested in KubeHound are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- ☆193May 29, 2026Updated 3 months ago
- Peirates - Kubernetes Penetration Testing tool☆1,482Updated this week
- Granular, Actionable Adversary Emulation for the Cloud☆2,383Updated this week
- All-in-one auditing toolkit for identifying common security issues in managed Kubernetes environments. Currently supports Amazon EKS.☆387Updated this week
- Kubernetes focused container assessment and context discovery tool for penetration testing☆486Nov 7, 2025Updated 9 months ago
- End-to-end encrypted cloud storage - Proton Drive • AdSpecial offer: 40% Off Yearly / 80% Off First Month. Protect your most important files, photos, and documents from prying eyes.
- Automating situational awareness for cloud penetration tests.☆2,566Aug 20, 2026Updated last week
- The GPOddity project, aiming at automating GPO attack vectors through NTLM relaying (and more).☆376Updated this week
- Post-exploit a compromised etcd, gain persistence and remote shell to nodes.☆94May 7, 2024Updated 2 years ago
- 🧰 Multi Tool Kubernetes Pentest Image☆263Mar 30, 2026Updated 5 months ago
- Nord Stream is a tool that allows you to extract secrets stored inside CI/CD environments by deploying malicious pipelines. It currently …☆374Jul 10, 2026Updated last month
- Kubernetes exploitation tool☆361Feb 25, 2026Updated 6 months ago
- Evaluate the RBAC permissions of Kubernetes identities through policies written in Rego☆351Mar 21, 2025Updated last year
- NamespaceHound is the tool for detecting the risk of potential namespace crossing violations in multi-tenant clusters.☆115Jan 2, 2025Updated last year
- SOAPHound is a custom-developed .NET data collector tool which can be used to enumerate Active Directory environments via the Active Dire…☆901Feb 3, 2024Updated 2 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Azure DevOps Services Attack Toolkit☆317Mar 15, 2025Updated last year
- Pentesting framework for GCP & Google Workspace that enumerates/downloads data that feeds into a BloodHound Opengraph model. Includes cre…☆309Updated this week
- Kubernetes Goat is a "Vulnerable by Design" cluster environment to learn and practice Kubernetes security using an interactive hands-on p…☆5,769Apr 16, 2026Updated 4 months ago
- A tool to generate a wordlist from the information present in LDAP, in order to crack passwords of domain accounts.☆380Mar 24, 2026Updated 5 months ago
- A tool to scan Kubernetes cluster for risky permissions☆1,432May 25, 2025Updated last year
- An offensive data enrichment pipeline☆995Jul 31, 2026Updated last month
- Active Directory data ingestor for BloodHound Legacy written in Rust. 🦀☆1,173Oct 21, 2024Updated last year
- Hunt for security weaknesses in Kubernetes clusters☆5,082Mar 19, 2024Updated 2 years ago
- An ADCS Exploitation Automation Tool Weaponizing Certipy and Coercer☆753May 19, 2023Updated 3 years ago
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- AD Miner is an Active Directory audit tool that leverages cypher queries to crunch data from the #Bloodhound graph database to uncover se…☆1,562Mar 18, 2026Updated 5 months ago
- DavRelayUp - a universal no-fix local privilege escalation in domain-joined windows workstations where LDAP signing is not enforced (the …☆577Jun 5, 2023Updated 3 years ago
- Threatest is a CLI and Go framework for end-to-end testing threat detection rules.☆345Updated this week
- Security risk analysis for Kubernetes resources☆1,479Jul 10, 2026Updated last month
- A curated list of resources about detecting threats and defending Kubernetes systems.☆412Sep 2, 2023Updated 3 years ago
- Your MitM sidekick for relaying attacks featuring DHCPv6 DNS takeover as well as mDNS, LLMNR and NetBIOS-NS spoofing.☆1,300Jul 3, 2026Updated last month
- Kubesploit is a cross-platform post-exploitation HTTP/2 Command & Control server and agent written in Golang, focused on containerized en…☆1,225Feb 3, 2025Updated last year
- A collection of Azure AD/Entra tools for offensive and defensive security purposes☆2,708Aug 5, 2026Updated 3 weeks ago
- Proof of Concept Utilities Developed to Research NTLM Relaying Attacks Targeting ADFS☆190Jun 22, 2022Updated 4 years ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- A Post-exploitation Toolset for Interacting with the Microsoft Graph API☆1,338Apr 9, 2026Updated 4 months ago
- The swiss army knife of LSASS dumping☆2,137Sep 17, 2024Updated last year
- Halberd : Multi-Cloud Agentic Attack Tool☆345Apr 8, 2026Updated 4 months ago
- Active Directory reconnaissance and exploitation for Red Teams via the Active Directory Web Services (ADWS).☆606Mar 19, 2024Updated 2 years ago
- Check for LDAP protections regarding the relay of NTLM authentication