Magier / RanLinks
Ran is an experimental offensive tool for Kubernetes clusters with the goal to enable quick emulation of adversary techniques and a collection for known attack vectors.
☆29Updated this week
Alternatives and similar repositories for Ran
Users that are interested in Ran are comparing it to the libraries listed below
Sorting:
- Supporting code and demos for KubeCon EU 2023 talk "Malicious Compliance: Reflections on Trusting Container Image Scanners"☆67Updated 2 years ago
- NamespaceHound is the tool for detecting the risk of potential namespace crossing violations in multi-tenant clusters.☆111Updated last year
- Community curated list of System and Network policy templates for the KubeArmor and Cilium☆50Updated 3 weeks ago
- Response Engine for managing threats in your Kubernetes☆189Updated 2 months ago
- ☆22Updated 6 months ago
- 🧰 Multi Tool Kubernetes Pentest Image☆252Updated 5 months ago
- Run Falco in a GitHub Actions to detect suspicious behavior in your CI/CD☆45Updated 3 months ago
- Research on various techniques to bypass default falco ruleset (based on falco v0.28.1).☆88Updated 2 years ago
- Sneefer is a PoC project showing how to filter out irrelevent vulnerabilities from container image vulnerability scan results. It is base…☆26Updated 2 years ago
- micromize is a security hardening tool designed to detect and break the post-exploit kill chain for containerized applications, leveragin…☆43Updated 3 weeks ago
- Intent driven security automation framework☆27Updated 5 months ago
- Runtime Security Solution for your CI/CD Pipeline☆112Updated this week
- Runtime detection and response for malicious events in Kubernetes workloads☆46Updated last year
- Threat-informed defense for cloudnative: Reference Implementation of a so-called Honeycluster - The detection capabilities can also be us…☆55Updated last month
- BadRobot - Operator Security Audit Tool☆223Updated last month
- This repository contains the container image scanning tool ORCA☆42Updated 4 months ago
- kntrl is an eBPF based runtime agent that monitors and prevents anomalous behaviour defined by you on your pipeline. kntrl achieves this …☆125Updated 4 months ago
- Generate a variety of suspect actions that are detected by Falco rulesets☆114Updated 8 months ago
- A replacement for "kubectl exec" that works over WebSocket connections.☆43Updated last year
- Kubernetes focused container assessment and context discovery tool for penetration testing☆475Updated 2 months ago
- Software Bill of Behaviour: A vendor-supplied profile of runtime behaviors for software, designed to be distributed directly within OCI a…☆45Updated 2 months ago
- ☆44Updated 8 months ago
- The regolibrary package contains the controls Kubescape uses for detecting misconfigurations in Kubernetes manifests.☆129Updated last week
- KBOM - Kubernetes Bill of Materials☆322Updated 6 months ago
- Kubernetes audit logging, when you don't control the control plane☆90Updated this week
- ☆86Updated 3 weeks ago
- ☆185Updated 9 months ago
- Validate the isolation posture of your container environment.☆310Updated last month
- Falco plugins registry☆112Updated this week
- Evaluate the RBAC permissions of Kubernetes identities through policies written in Rego☆351Updated 10 months ago