abdullahgarcia / kubernetes-for-socLinks
kubernetes-for-soc aims to fast-track the learning curve for SOC analysts by enabling them to swiftly grasp the essential concepts and knowledge necessary to perform their critical duties.
β57Updated 2 years ago
Alternatives and similar repositories for kubernetes-for-soc
Users that are interested in kubernetes-for-soc are comparing it to the libraries listed below
Sorting:
- β85Updated this week
- π§° Multi Tool Kubernetes Pentest Imageβ251Updated 4 months ago
- Damn Vulnerable Kubernetes App (DVKA) is a series of apps deployed on Kubernetes that are damn vulnerable.β194Updated 3 months ago
- β183Updated 8 months ago
- ## Auto-archived due to inactivity. ## Tooling to simulate runtime attacks and test default runtime detections from Datadog Cloud Securitβ¦β37Updated last year
- NamespaceHound is the tool for detecting the risk of potential namespace crossing violations in multi-tenant clusters.β111Updated last year
- AttachΓ© provides an emulation layer for Cloud Provider IMDS APIsβ60Updated last year
- β75Updated 2 months ago
- Ansible/Vagrant/Packer files to create a virtual machine with the tooling needed to perform cloud security assessmentsβ142Updated last year
- Generate datasets of cloud audit logs for common attacksβ230Updated last year
- Automated testing, generation & manipulation of #osquery packsβ73Updated last year
- DeRF (Detection Replay Framework) is an "Attacks As A Service" framework, allowing the emulation of offensive techniques and generation oβ¦β101Updated last year
- Template Go app repo with local test/lint/build/vulnerability check workflow, and on tag image test/build/release pipelines, with ko geneβ¦β104Updated last year
- β93Updated 2 months ago
- β42Updated 2 years ago
- A curated list of resources about detecting threats and defending Kubernetes systems.β401Updated 2 years ago
- kntrl is an eBPF based runtime agent that monitors and prevents anomalous behaviour defined by you on your pipeline. kntrl achieves this β¦β125Updated 3 months ago
- β115Updated 4 months ago
- β31Updated last month
- Test & Compare different Kubernetes security offerings on EKS, GKE and AKSβ40Updated last year
- β75Updated 9 months ago
- Simple plug-and-play Github Action to block unauthorized outbound traffic (egress) in your Github workflowsβ114Updated this week
- Threat Modeling (based on STRIDE approach) for Kubernetes systems.β25Updated last year
- Curating Falco rules with MITRE ATT&CK Matrixβ86Updated last year
- Nextdoor's Cloud Security Posture Management (CSPM) Evaluation Matrixβ59Updated 2 years ago
- Research on various techniques to bypass default falco ruleset (based on falco v0.28.1).β88Updated last year
- A cheatsheet containing AWS CloudTrail events that can be used for Incident Response purposes or Detection Engineering.β81Updated this week
- Microsoft Defender for Cloud threat matrix for Kubernetesβ30Updated 2 years ago
- β169Updated 3 months ago
- An AI-powered tool for discovering privilege escalation opportunities in AWS IAM configurations.β117Updated 2 weeks ago