PaloAltoNetworks / rbac-policeLinks
Evaluate the RBAC permissions of Kubernetes identities through policies written in Rego
☆351Updated 9 months ago
Alternatives and similar repositories for rbac-police
Users that are interested in rbac-police are comparing it to the libraries listed below
Sorting:
- Kubernetes focused container assessment and context discovery tool for penetration testing☆471Updated last month
- A collection of manifests that will create pods with elevated privileges.☆656Updated 3 years ago
- ☆266Updated last year
- Process documentation, non-code deliverables, and miscellaneous artifacts of Kubernetes SIG Security☆230Updated 2 months ago
- Tool for building Kubernetes attack paths☆928Updated last month
- Tool for auditing RBACs in Kubernetes☆226Updated last year
- Create Kubernetes AdmissionReview requests from Kubernetes resource manifests☆162Updated 2 weeks ago
- ☆103Updated last month
- All-in-one auditing toolkit for identifying common security issues in managed Kubernetes environments. Currently supports Amazon EKS.☆366Updated 4 months ago
- Supporting code and demos for KubeCon EU 2023 talk "Malicious Compliance: Reflections on Trusting Container Image Scanners"☆67Updated 2 years ago
- 💰💸☁️ For those interested in running Kubernetes in highly regulated environments, particularly financial services☆311Updated 3 years ago
- Research on various techniques to bypass default falco ruleset (based on falco v0.28.1).☆88Updated last year
- KBOM - Kubernetes Bill of Materials☆323Updated 4 months ago
- Security testing tool for Kubernetes, abusing kubelet credentials on public cloud providers.☆162Updated 3 weeks ago
- The regolibrary package contains the controls Kubescape uses for detecting misconfigurations in Kubernetes manifests.☆129Updated 2 weeks ago
- Response Engine for managing threats in your Kubernetes☆186Updated last month
- Kubernetes RBAC static analysis & visualisation tool☆735Updated last month
- OWASP Foundation Web Respository☆600Updated last month
- BadRobot - Operator Security Audit Tool☆223Updated last week
- NamespaceHound is the tool for detecting the risk of potential namespace crossing violations in multi-tenant clusters.☆111Updated 11 months ago
- A client for kubelet☆857Updated 4 months ago
- Dynamic Application and API Security Testing☆193Updated 2 years ago
- Trivy's misconfiguration scanning engine☆215Updated 11 months ago
- 🧰 Multi Tool Kubernetes Pentest Image☆250Updated 3 months ago
- Kubernetes Security Training Platform - focusing on security mitigation☆968Updated last year
- Attacking and Defending Kubernetes Clusters: A Guided Tour☆211Updated 4 years ago
- Kubernetes Security Checklist and Requirements - All in One (authentication, authorization, logging, secrets, configuration, network, wor…☆481Updated 4 years ago
- Connect Falco to your ecosystem☆637Updated 3 weeks ago
- Peirates - Kubernetes Penetration Testing tool☆1,397Updated 4 months ago
- CNAPPgoat is an open source project designed to modularly provision vulnerable-by-design components in cloud environments.☆291Updated last year