XDU-SysSec / ExcessivePermissionAttackLinks
Take Over the Whole Cluster: Attacking Kubernetes via Excessive Permissions of Third-party Applications
☆19Updated last year
Alternatives and similar repositories for ExcessivePermissionAttack
Users that are interested in ExcessivePermissionAttack are comparing it to the libraries listed below
Sorting:
- A penetration toolkit for container environment☆105Updated this week
 - Cloud Native Security News☆65Updated 10 months ago
 - ☆173Updated 2 months ago
 - awesome resources about cloud native security 🐿☆324Updated last year
 - ☆175Updated 2 years ago
 - 一个搜索网络安全领域顶会论文的小工具☆92Updated 3 months ago
 - CVE-2022-0847 used to achieve container escape 利用CVE-2022-0847 (Dirty Pipe) 实现容器逃逸☆33Updated 3 years ago
 - ☆52Updated 7 months ago
 - SecCodeBench is a benchmark suite focusing on evaluating the security of code generated by large language models (LLMs).☆74Updated 3 weeks ago
 - Auto-generated CodeQL rules for matching CVE vulnerabilities and variants.☆181Updated last year
 - ☆18Updated 2 years ago
 - 容器安全漏洞的分析与复现☆160Updated last year
 - Security Observability Framework for ML/AI Model File Loading☆39Updated 2 months ago
 - collections of container escape techniques 🐿☆72Updated 4 years ago
 - ☆25Updated 3 years ago
 - 《深入理解Semgrep》Finding vulnerabilities with Semgrep.☆57Updated 2 years ago
 - ☆27Updated last year
 - Writeups By Straw Hat☆55Updated last year
 - Low-level RASP: Protecting Applications Implemented in High-level Programming Languages☆68Updated 2 weeks ago
 - A grey-box web application Fuzzer☆23Updated last year
 - ☆193Updated last week
 - The container escape challenge of Be A RWCTFer competition (https://be-a-rwctfer.realworldctf.com/)☆63Updated 7 months ago
 - YASA is an open-source static program analysis project. Its core innovation lies in a unified intermediate representation called UAST, d…☆153Updated this week
 - Container (Docker) escape exploits☆52Updated 3 years ago
 - 静态分析笔记 Static-Analysis-Notes 程序分析笔记 资源 分享☆185Updated 2 years ago
 - ☆22Updated last month
 - Corax for Java: A general static analysis framework for java code checking.☆253Updated 11 months ago
 - ☆42Updated 3 years ago
 - 《深入理解SAST静态应用安全测试》Static Application Security Testing.☆362Updated last month
 - attachments and (some) writeups/source code for RWCTF 6th☆119Updated last year