abdullahgarcia / kubernetes-for-soc
kubernetes-for-soc aims to fast-track the learning curve for SOC analysts by enabling them to swiftly grasp the essential concepts and knowledge necessary to perform their critical duties.
☆51Updated 11 months ago
Related projects ⓘ
Alternatives and complementary repositories for kubernetes-for-soc
- 🧰 Multi Tool Kubernetes Pentest Image☆215Updated 2 months ago
- ☆168Updated last month
- Tooling to simulate runtime attacks and test default runtime detections from Datadog Cloud Security Management.☆30Updated last month
- NamespaceHound is the tool for detecting the risk of potential namespace crossing violations in multi-tenant clusters.☆59Updated 8 months ago
- Test & Compare different Kubernetes security offerings on EKS, GKE and AKS☆34Updated 2 months ago
- Kubernetes audit logging, when you don't control the control plane☆65Updated this week
- Nextdoor's Cloud Security Posture Management (CSPM) Evaluation Matrix☆58Updated last year
- Ansible/Vagrant/Packer files to create a virtual machine with the tooling needed to perform cloud security assessments☆104Updated 2 months ago
- AWACS for RBAC. Tool for auditing CRUD permissions in Kubernetes' RBAC.☆38Updated 6 months ago
- DeRF (Detection Replay Framework) is an "Attacks As A Service" framework, allowing the emulation of offensive techniques and generation o…☆84Updated 10 months ago
- ☆24Updated 2 weeks ago
- Generate datasets of cloud audit logs for common attacks☆184Updated 3 months ago
- ☆42Updated last year
- Simple plug-and-play Github Action to block unauthorized outbound traffic (egress) in your Github workflows☆79Updated this week
- AWS honey token manager☆84Updated 3 months ago
- ☆67Updated 8 months ago
- A cheatsheet containing AWS CloudTrail events that can be used for Incident Response purposes or Detection Engineering.☆62Updated 6 months ago
- An AI-powered tool for discovering privilege escalation opportunities in AWS IAM configurations.☆96Updated last month
- A tool to uncover undocumented APIs from the AWS Console.☆83Updated 2 months ago
- HashiCorp-relevant rules for the Semgrep code analysis tool☆37Updated last year
- truffleproc — hunt secrets in process memory (TruffleHog & gdb mashup)☆110Updated last year
- Simple Workspace Attack Tool (SWAT) is a tool for simulating malicious behavior against Google Workspace in reference to the MITRE ATT&CK…☆161Updated last month
- Tools that checks for misconfigured access to Github OIDC from AWS roles and GCP service accounts☆57Updated last year
- Research on various techniques to bypass default falco ruleset (based on falco v0.28.1).☆80Updated 9 months ago
- ☆107Updated last month
- A tool for scanning public or private AMIs for sensitive files and secrets. The tool follows the research made on AWS CloudQuarry where w…☆87Updated last week
- Convert cloudtrail data to MITRE ATT&CK Sightings☆79Updated 2 years ago
- Compares and analyzes GCP IAM roles.☆76Updated 5 months ago
- K8s API Honeypot with Active Defense Capabilities☆39Updated 10 months ago
- Tool for obfuscating and deobfuscating data.☆64Updated 8 months ago