brompwnie / botb
A container analysis and exploitation tool for pentesters and engineers.
☆643Updated last year
Related projects ⓘ
Alternatives and complementary repositories for botb
- Peirates - Kubernetes Penetration Testing tool☆1,243Updated last month
- Kubesploit is a cross-platform post-exploitation HTTP/2 Command & Control server and agent written in Golang, focused on containerized en…☆1,123Updated 4 months ago
- ☆233Updated 2 months ago
- Kubernetes focused container assessment and context discovery tool for penetration testing☆438Updated 5 months ago
- Cloud Container Attack Tool (CCAT) is a tool for testing security of container environments.☆591Updated 5 years ago
- Evaluate the RBAC permissions of Kubernetes identities through policies written in Rego☆338Updated 11 months ago
- A Microservices-based framework for the study of Network Security and Penetration Test techniques☆575Updated last month
- The Swiss Army Container for Cloud Native Security. Container with all the list of useful tools/commands while hacking and securing Conta…☆262Updated last year
- Cloud-related research releases from the Rhino Security Labs team.☆356Updated 4 years ago
- WeirdAAL (AWS Attack Library)☆781Updated last year
- Docker Enumeration, Escalation of Privileges and Container Escapes (DEEPCE)☆1,205Updated 5 months ago
- Tool for auditing RBACs in Kubernetes☆215Updated 9 months ago
- Security testing tool for Kubernetes, abusing kubelet credentials on public cloud providers.☆160Updated last year
- Container introspection tool. Find out what container runtime is being used as well as features available.☆1,013Updated 3 years ago
- A tool to scan Kubernetes cluster for risky permissions☆1,323Updated last week
- A Blazing fast Security Auditing tool for Kubernetes☆991Updated 7 months ago
- A collection of manifests that will create pods with elevated privileges.☆599Updated 2 years ago
- Automated Attack Simulation in the Cloud, complete with detection use cases.☆499Updated this week
- ☆555Updated 3 years ago
- A script to enumerate Google Storage buckets, determine what access you have to them, and determine if they can be privilege escalated.☆483Updated last year
- k8s audit repo☆226Updated 5 years ago
- ChopChop is a CLI to help developers scanning endpoints and identifying exposition of sensitive services/files/folders.☆675Updated last year
- Exploits written by the Rhino Security Labs team☆1,059Updated 3 years ago
- Find cloud assets that no one wants exposed 🔎 ☁️☆332Updated 4 years ago
- PoC for CVE-2018-1002105.☆223Updated 5 years ago
- Proof of concept code for Datadog Security Labs referenced exploits.☆417Updated last year
- A centralized source of all AWS IAM privilege escalation methods released by Rhino Security Labs.☆897Updated 5 years ago
- ☆684Updated last year
- Python automation of Docker.sock abuse☆210Updated last year
- S3 Account Search☆246Updated last month