cloudnative-security / hacking-kubernetes
☆45Updated 3 years ago
Alternatives and similar repositories for hacking-kubernetes:
Users that are interested in hacking-kubernetes are comparing it to the libraries listed below
- ☆177Updated 2 weeks ago
- Damn Vulnerable Kubernetes App (DVKA) is a series of apps deployed on Kubernetes that are damn vulnerable.☆138Updated last month
- A tool to keep AWS pentests and red teams efficient, organized, and stealthy.☆91Updated last year
- 🧰 Multi Tool Kubernetes Pentest Image☆230Updated 3 weeks ago
- KubeStalk discovers Kubernetes and related infrastructure based attack surface from a black-box perspective.☆171Updated 3 months ago
- Research on various techniques to bypass default falco ruleset (based on falco v0.28.1).☆81Updated last year
- ☆96Updated 3 months ago
- Hide from the InstanceCredentialExfiltration GuardDuty finding by using VPC Endpoints☆115Updated last year
- GCP GOAT is the vulnerable application for learn the GCP Security☆64Updated last year
- Tool for auditing RBACs in Kubernetes☆219Updated last year
- Offensive Kubernetes Threat Matrix -- kubenomicon.com☆39Updated 3 months ago
- Curating Falco rules with MITRE ATT&CK Matrix☆79Updated last year
- ☆140Updated last week
- GCPGoat : A Damn Vulnerable GCP Infrastructure☆384Updated 6 months ago
- This repository contain any information that can be used to hack Kubernetes☆102Updated 2 years ago
- Recon tool for cloud provider attribution. Supports AWS, Azure, Google, Cloudflare, and Digital Ocean.☆166Updated 6 months ago
- Blogpost series showcasing interesting cloud - web app security bugs☆47Updated last year
- Protect against subdomain takeover☆92Updated 11 months ago
- ☆245Updated 8 months ago
- Creates Kubernetes Golden Tickets through ServiceAccount token forging and user certificate forging.☆47Updated 2 months ago
- ☆173Updated 2 years ago
- Public repository of all things cloud security.☆41Updated 7 months ago
- POC tool to create signed AWS API GET requests to bypass Guard Duty alerting of off-instance credential use via SSRF☆58Updated last year
- Tools and blogs I use to perform GCP red teams☆112Updated 9 months ago
- A deliberately vulnerable Kubernetes cluster☆124Updated last year
- An AWS IAM policy statement parser and query tool.☆177Updated last year
- Kubernetes focused container assessment and context discovery tool for penetration testing☆456Updated 10 months ago
- Kubernetes Pwnage for all☆57Updated 4 years ago
- ☆93Updated 2 years ago
- A curated list of resources about detecting threats and defending Kubernetes systems.☆377Updated last year