cloudnative-security / hacking-kubernetes
☆42Updated 3 years ago
Related projects ⓘ
Alternatives and complementary repositories for hacking-kubernetes
- Damn Vulnerable Kubernetes App (DVKA) is a series of apps deployed on Kubernetes that are damn vulnerable.☆57Updated 3 months ago
- ☆168Updated last month
- 🧰 Multi Tool Kubernetes Pentest Image☆215Updated 2 months ago
- ☆91Updated 6 months ago
- GCP GOAT is the vulnerable application for learn the GCP Security☆62Updated last year
- This repository contain any information that can be used to hack Kubernetes☆99Updated 2 years ago
- OWASP Foundation Web Respository☆37Updated 2 months ago
- Nord Stream is a tool that allows you to extract secrets stored inside CI/CD environments by deploying malicious pipelines. It currently …☆253Updated last week
- Tool for auditing RBACs in Kubernetes☆215Updated 9 months ago
- KubeStalk discovers Kubernetes and related infrastructure based attack surface from a black-box perspective.☆166Updated last year
- A deliberately vulnerable Kubernetes cluster☆118Updated 11 months ago
- ☆233Updated 2 months ago
- Curating Falco rules with MITRE ATT&CK Matrix☆74Updated 8 months ago
- Blogpost series showcasing interesting cloud - web app security bugs☆46Updated last year
- A tool to keep AWS pentests and red teams efficient, organized, and stealthy.☆89Updated 8 months ago
- Kubernetes focused container assessment and context discovery tool for penetration testing☆438Updated 5 months ago
- Protect against subdomain takeover☆92Updated 5 months ago
- Research on various techniques to bypass default falco ruleset (based on falco v0.28.1).☆80Updated 9 months ago
- Awesome resources about Security in Kubernetes☆40Updated last year
- PESD (Proxy Enriched Sequence Diagrams) Exporter converts Burp Suite's proxy traffic into interactive diagrams☆98Updated 9 months ago
- boostsecurityio/lotp☆101Updated 7 months ago
- A simple script which implements different Cognito attacks such as Account Oracle or Priviledge Escalation☆100Updated 9 months ago
- The AWS Enumerator was created for service enumeration and info dumping for investigations of penetration testers during Black-Box testin…☆181Updated 2 years ago
- Resources to learn cloud environment and pentesting the same, contains AWS, Azure, Google Cloud☆50Updated 2 years ago
- ☆31Updated last week
- Ansible/Vagrant/Packer files to create a virtual machine with the tooling needed to perform cloud security assessments☆104Updated 2 months ago
- The Swiss Army Container for Cloud Native Security. Container with all the list of useful tools/commands while hacking and securing Conta…☆262Updated last year
- OWASP Kubernetes security and compliance tool [WIP]☆104Updated last year
- 🌐 Visualize and explore IaC ✒️ Create and share notes in VS Code 🤝 Sync notes and findings in real-time with friends☆71Updated 9 months ago
- truffleproc — hunt secrets in process memory (TruffleHog & gdb mashup)☆110Updated last year