accuknox / k8sthreatmodelingLinks
Threat Modeling (based on STRIDE approach) for Kubernetes systems.
☆25Updated last year
Alternatives and similar repositories for k8sthreatmodeling
Users that are interested in k8sthreatmodeling are comparing it to the libraries listed below
Sorting:
- NamespaceHound is the tool for detecting the risk of potential namespace crossing violations in multi-tenant clusters.☆111Updated 9 months ago
- ☆84Updated this week
- ☆27Updated 5 months ago
- Test & Compare different Kubernetes security offerings on EKS, GKE and AKS☆40Updated last year
- Tooling to simulate runtime attacks and test default runtime detections from Datadog Cloud Security Management.☆34Updated last year
- Microsoft Defender for Cloud threat matrix for Kubernetes☆26Updated 2 years ago
- a tool to audit the istio service mesh☆173Updated 4 years ago
- Clean accounts over permissions in GCP infra at scale☆71Updated 2 years ago
- kubernetes-for-soc aims to fast-track the learning curve for SOC analysts by enabling them to swiftly grasp the essential concepts and kn…☆56Updated last year
- Slack alert bot for matching Github Audit Events☆10Updated 11 months ago
- ☆182Updated 6 months ago
- VMClarity is a tool for agentless detection and management of Virtual Machine Software Bill Of Materials (SBOM) and vulnerabilities☆102Updated last year
- Open Source runtime scanner for k8s cluster and perform security audit checks based on CIS Kubernetes Benchmark specification☆69Updated last month
- ☆44Updated 5 months ago
- Kubernetes audit logging, when you don't control the control plane☆88Updated this week
- Kubernetes Stranger Danger☆66Updated last month
- kntrl is an eBPF based runtime agent that monitors and prevents anomalous behaviour defined by you on your pipeline. kntrl achieves this …☆120Updated last month
- Protect your Cloud Native Applications running on Kubernetes from malicious attacks with pre-registered source code, pre-registered runti…☆57Updated 10 months ago
- This terraform provider can be used to get remote code execution by injecting a dummy resource in a writeable state file.☆58Updated 9 months ago
- ☆103Updated 8 months ago
- Simple plug-and-play Github Action to block unauthorized outbound traffic (egress) in your Github workflows☆112Updated 2 weeks ago
- OWASP Kubernetes security and compliance tool [WIP]☆106Updated 2 years ago
- PEACH - a step-by-step framework for modeling and improving SaaS and PaaS tenant isolation, by managing the attack surface exposed by use…☆73Updated 2 years ago
- A simple mitmproxy blueprint to intercept HTTPS traffic from app running on Kubernetes☆73Updated 6 months ago
- K8s API Honeypot with Active Defense Capabilities☆42Updated last year
- ☆22Updated 3 months ago
- Attaché provides an emulation layer for Cloud Provider IMDS APIs☆60Updated last year
- Template Go app repo with local test/lint/build/vulnerability check workflow, and on tag image test/build/release pipelines, with ko gene…☆103Updated last year
- ☆114Updated 2 months ago
- Pentester-focused Docker registry tool to enumerate and pull images☆35Updated last week