Zeerg / helix-honeypot
K8s API Honeypot with Active Defense Capabilities
☆40Updated last year
Alternatives and similar repositories for helix-honeypot:
Users that are interested in helix-honeypot are comparing it to the libraries listed below
- ☆69Updated 2 months ago
- NamespaceHound is the tool for detecting the risk of potential namespace crossing violations in multi-tenant clusters.☆82Updated 3 months ago
- Research on various techniques to bypass default falco ruleset (based on falco v0.28.1).☆81Updated last year
- Threat Modeling (based on STRIDE approach) for Kubernetes systems.☆21Updated 6 months ago
- Automated testing, generation & manipulation of #osquery packs☆72Updated 5 months ago
- Kubernetes audit logging, when you don't control the control plane☆73Updated this week
- Kubernetes Unhinged Shell 😎☆45Updated 2 years ago
- ☆94Updated 2 months ago
- ☆25Updated 11 months ago
- Container Blackbox Security Auditing Tool: enumerates security configuration from within the target container☆106Updated 6 years ago
- Adversary emulation for EDR/SIEM testing (macOS/Linux)☆40Updated last year
- Tooling to simulate runtime attacks and test default runtime detections from Datadog Cloud Security Management.☆30Updated 5 months ago
- a tool to audit the istio service mesh☆173Updated 3 years ago
- An implementation of infrastructure-as-code scanning using dynamic tooling.☆56Updated 3 years ago
- Template Go app repo with local test/lint/build/vulnerability check workflow, and on tag image test/build/release pipelines, with ko gene…☆104Updated 11 months ago
- egrets monitors egress☆45Updated 5 years ago
- A repository to store Rad Fingerprinting data.☆24Updated 8 months ago
- Compares and analyzes GCP IAM roles.☆77Updated last month
- Static analysis for CloudFormation templates to identify common misconfiguration☆57Updated 3 years ago
- Clean accounts over permissions in GCP infra at scale☆71Updated last year
- ☆53Updated 2 weeks ago
- ☆112Updated 3 months ago
- Generative and mutative fuzzer for Kubernetes admission controller chains by automatically parsing the cluster api specification.☆74Updated last year
- prel(iminary) is an application that temporarily assigns Google Cloud IAM Roles and includes an approval process.☆39Updated this week
- ☆20Updated 11 months ago
- GCP CSPM using Google Sheets☆35Updated last week
- ☆27Updated 5 months ago
- A replacement for "kubectl exec" that works over WebSocket connections.☆38Updated last year
- HashiCorp-relevant rules for the Semgrep code analysis tool☆39Updated last year
- Simple plug-and-play Github Action to block unauthorized outbound traffic (egress) in your Github workflows☆91Updated this week