cloudnative-security / hacking-kubernetes
☆44Updated 3 years ago
Alternatives and similar repositories for hacking-kubernetes:
Users that are interested in hacking-kubernetes are comparing it to the libraries listed below
- Damn Vulnerable Kubernetes App (DVKA) is a series of apps deployed on Kubernetes that are damn vulnerable.☆131Updated 3 weeks ago
- ☆175Updated 4 months ago
- Research on various techniques to bypass default falco ruleset (based on falco v0.28.1).☆81Updated last year
- ☆93Updated last month
- GCP GOAT is the vulnerable application for learn the GCP Security☆64Updated last year
- Tool for auditing RBACs in Kubernetes☆216Updated last year
- ☆239Updated 6 months ago
- Blogpost series showcasing interesting cloud - web app security bugs☆47Updated last year
- 🧰 Multi Tool Kubernetes Pentest Image☆229Updated 7 months ago
- Offensive Kubernetes Threat Matrix -- kubenomicon.com☆38Updated 2 months ago
- ☆172Updated last year
- A tool to keep AWS pentests and red teams efficient, organized, and stealthy.☆90Updated last year
- Hide from the InstanceCredentialExfiltration GuardDuty finding by using VPC Endpoints☆113Updated last year
- POC tool to create signed AWS API GET requests to bypass Guard Duty alerting of off-instance credential use via SSRF☆58Updated last year
- A deliberately vulnerable Kubernetes cluster☆124Updated last year
- Curating Falco rules with MITRE ATT&CK Matrix☆78Updated last year
- Tools and blogs I use to perform GCP red teams☆107Updated 8 months ago
- Creates Kubernetes Golden Tickets through ServiceAccount token forging and user certificate forging.☆42Updated 3 weeks ago
- ☆33Updated 3 months ago
- Ansible/Vagrant/Packer files to create a virtual machine with the tooling needed to perform cloud security assessments☆138Updated 2 months ago
- KubeStalk discovers Kubernetes and related infrastructure based attack surface from a black-box perspective.☆171Updated 2 months ago
- GCPGoat : A Damn Vulnerable GCP Infrastructure☆379Updated 4 months ago
- ☆93Updated 2 years ago
- An AWS IAM policy statement parser and query tool.☆174Updated last year
- Protect against subdomain takeover☆93Updated 10 months ago
- Kubernetes Stranger Danger☆62Updated last year
- This repository contain any information that can be used to hack Kubernetes☆98Updated 2 years ago
- Public repository of all things cloud security.☆41Updated 6 months ago
- Awesome list for cloud security related projects☆116Updated 2 years ago
- Determine privileges from cloud credentials via brute-force testing.☆67Updated 7 months ago