Metarget / awesome-cloud-native-security
awesome resources about cloud native security 🐿
☆314Updated last year
Alternatives and similar repositories for awesome-cloud-native-security:
Users that are interested in awesome-cloud-native-security are comparing it to the libraries listed below
- k0otkit is a universal post-penetration technique which could be used in penetrations against Kubernetes clusters.☆282Updated 3 years ago
- ☆165Updated 2 years ago
- TerraformGoat is HXSecurity research lab's "Vulnerable by Design" multi cloud deployment tool.☆569Updated 2 years ago
- A penetration toolkit for container environment☆77Updated 2 months ago
- Metarget is a framework providing automatic constructions of vulnerable infrastructures.☆1,192Updated last month
- Pre-Built Vulnerable Multiple API Scenarios Environments Based on Docker-Compose.☆392Updated 2 years ago
- Kubernetes POC for utilizing write mount to /var/log for getting a root on the host☆94Updated 4 years ago
- Web application build Golang with Vulnerability☆251Updated 2 years ago
- Security & Development☆263Updated last year
- Take Over the Whole Cluster: Attacking Kubernetes via Excessive Permissions of Third-party Applications☆16Updated 10 months ago
- Cloud Native Security News☆63Updated 2 months ago
- 🌶 一些和容器化/容器编排/服务网格等技术相关的安全代码片段[自用备份]☆80Updated 3 years ago
- Hades is a Host-Based Intrusion Detection System based on eBPF(mainly)☆290Updated 3 months ago
- 红蓝对抗量化评估系统(Red Team Assessment Scoring System)☆201Updated 2 years ago
- 云原生安全资料库☆129Updated 2 months ago
- CVE Data Analysis, CVE Monitor, CVE EXP Prediction Based on Deep Learning. 1999-2020年存量CVE数据分析、监控CVE增量更新、基于深度学习的CVE EXP预测和自动化推送☆175Updated last year
- docker container escape check || Docker 容器逃逸检测☆583Updated 2 years ago
- 《云原生安全:攻防实践与体系构建》资料仓库☆737Updated 2 years ago
- 一个由长亭自研,直观而可扩展的容器安全 SDK☆119Updated last year
- collections of container escape techniques 🐿☆68Updated 4 years ago
- 安全运营部署指南(wazuh部署指南)☆141Updated last year
- Linux Eelvation(持续更新)☆395Updated 2 years ago
- Codeql学习笔记☆866Updated 2 years ago
- A static analysis of vulnerabilities, Docker and Kubernetes cluster configuration detect toolkit based on the real penetration of cloud c…☆197Updated this week
- 记录学习codeql的过程☆374Updated last year
- 《深入理解SAST静态应用安全测试》Static Application Security Testing.☆336Updated 11 months ago
- 静态分析及代码审计自动化相关资料收集☆291Updated 2 years ago
- CodeQL extractor for java, which don't need to compile java source☆337Updated 2 years ago
- 一个免费的镜像漏洞扫描工具, 可以扫描镜像中已安装软件包的漏洞,支持中文漏洞库,可与 Harbor 无缝集成。☆106Updated 2 years ago
- Security Learning For All~☆280Updated 3 years ago