averonesis / kubolt
Kubolt utility for scanning public kubernetes clusters
☆109Updated 9 months ago
Alternatives and similar repositories for kubolt:
Users that are interested in kubolt are comparing it to the libraries listed below
- Executes commands in a container on a kubelet endpoint that allows anonymous authentication (default)☆112Updated 6 years ago
- A security testing Slackbot built with a Kubernetes backend on the Google Cloud Platform☆165Updated 6 months ago
- Kubernetes POC for utilizing write mount to /var/log for getting a root on the host☆94Updated 4 years ago
- Security testing tool for Kubernetes, abusing kubelet credentials on public cloud providers.☆162Updated last year
- Kubernetes Easter CTF☆58Updated 4 years ago
- PoC for CVE-2018-1002105.☆223Updated 6 years ago
- A POC for DNS spoofing in kubernetes clusters. Runs with minimum capabilities, on default installations of kuberentes.☆77Updated 5 years ago
- CVE-2017-9506 - SSRF☆188Updated 3 years ago
- ☆27Updated 4 months ago
- A list of checks with tips for analyzing the security of Android applications☆12Updated 5 years ago
- A security monitoring solution for Kubernetes☆131Updated last year
- Ruby command-line interface to Burp Suite's REST API☆59Updated 4 years ago
- ☆70Updated 7 years ago
- Some helpful Helm Charts for pentesters☆39Updated 6 years ago
- DEF CON 26 Workshop - Attacking & Auditing Docker Containers Using Open Source☆107Updated 5 years ago
- vulnerable single sign on☆147Updated 7 months ago
- Docker image to exploit RCE, try for pentest methods and test container security solutions (trivy, falco and etc.)☆88Updated 4 years ago
- Serverless Workshop☆16Updated 2 years ago
- Container Blackbox Security Auditing Tool: enumerates security configuration from within the target container☆106Updated 6 years ago
- Burp Extension for AWS Signing☆87Updated 2 months ago
- Kubernetes Pwnage for all☆56Updated 4 years ago
- Proof-of-concept CORS exploitation tool.☆35Updated 5 years ago
- Burp Commander written in Go☆57Updated 6 years ago
- Packaging audit toolkit using vulners.com vulnerability database☆19Updated 6 years ago
- Pentester-focused Docker registry tool to enumerate and pull images☆105Updated 5 years ago
- Burp with Friends☆102Updated 2 years ago
- AWS Extender CLI is a command-line script to test S3 buckets as well as Google Storage buckets and Azure Storage containers for common mi…☆82Updated 4 years ago
- A tool for automatically gathering sensitive information from exposed Jenkins servers☆103Updated 2 years ago
- XSS explot kit/Blind XSS framework/BurpSuite extension☆49Updated 4 years ago
- Links and resources for the O'Reilly Kubernetes Security book☆98Updated 4 years ago