OWASP / kstg
Kubernetes Security Testing Guide
☆26Updated 11 months ago
Alternatives and similar repositories for kstg:
Users that are interested in kstg are comparing it to the libraries listed below
- Exploit CVE-2021-25735: Kubernetes Validating Admission Webhook Bypass☆18Updated 3 years ago
- Dockerfile Security Checker using OPA Rego policies with Conftest☆60Updated 2 years ago
- A curated list of security tools for Hackers & Builders!☆99Updated 8 months ago
- OWASP Kubernetes Security Testing Guide☆37Updated 7 months ago
- Orchestron is an Application Vulnerability Management and Correlation Tool.Orchestron helps you solve one key problem "Find and fix vulne…☆31Updated 2 years ago
- Jekyll Files for cloudsecwiki.com☆50Updated 3 years ago
- Reference architecture and proof of concept implementation for supply chain security gateway☆23Updated 2 years ago
- A gitbook for doing a null Bangalore session on linux container security to discuss and teach namespaces, cgroups etc.☆20Updated 7 years ago
- Reconnaissance test in Kubernetes clusters☆21Updated 6 years ago
- Extensive code infrastructure for finding unintended information leaks in files, git repositories and much more.☆28Updated 2 years ago
- This Repository contains the stable beta preview of the next major secureCodeBox (SCB) release v2.0.0.☆24Updated 4 years ago
- Kubernetes Pwnage for all☆57Updated 4 years ago
- ☆27Updated 5 months ago
- OWASP Threat Dragon with Gitlab Integration☆25Updated 7 years ago
- An auto-scoring capture-the-flag game focusing on TOCTOU vulnerabilities☆19Updated 4 years ago
- Salesforce Policy Deviation Checker☆30Updated 4 years ago
- AppSecPipeline Specification for DevOps automation.☆40Updated 2 years ago
- ☆35Updated 4 years ago
- A combined list of helpful awscli commands from Scott Piper's flaws.cloud exercise as well as from Beau Bullock's Breaching the Cloud Tra…☆19Updated 4 years ago
- Swachalit - The null automation platform that hosts null.co.in.☆20Updated 4 months ago
- Compares the TLS configuration of a web server to the Mozilla TLS Profiles☆25Updated last year
- ☆23Updated 3 years ago
- Containerized pentesting tools☆45Updated 2 years ago
- Appsecco training course content on Attacking and Auditing Dockers Containers and Kubernetes Clusters☆14Updated 5 years ago
- DEF CON 26 Workshop - Attacking & Auditing Docker Containers Using Open Source☆108Updated 5 years ago
- AWS Security Checks☆39Updated 7 years ago
- Maturity Model Collaborative project☆15Updated 2 years ago
- Unofficial api for cve.mitre.org☆40Updated 3 years ago
- A small library to alter AWS API requests; Used for fuzzing research☆22Updated last year
- insject is a tool for poking at containers. It enables you to run an arbitrary command in a container or any mix of Linux namespaces.☆50Updated 3 years ago