danielsagi / kube-pod-escape
Kubernetes POC for utilizing write mount to /var/log for getting a root on the host
☆92Updated 4 years ago
Related projects ⓘ
Alternatives and complementary repositories for kube-pod-escape
- Information about Kubernetes CVE-2020-8558, including proof of concept exploit.☆42Updated 4 years ago
- Executes commands in a container on a kubelet endpoint that allows anonymous authentication (default)☆113Updated 5 years ago
- Exploit for CVE-2021-25741 vulnerability☆28Updated 2 years ago
- Container Excape PoC for CVE-2022-0847 "DirtyPipe"☆76Updated 2 years ago
- This is a PoC exploit for CVE-2020-8559 Kubernetes Vulnerability☆53Updated 4 years ago
- Post-exploit a compromised etcd, gain persistence and remote shell to nodes.☆70Updated 6 months ago
- This repository contain any information that can be used to hack Kubernetes☆99Updated 2 years ago
- A POC for DNS spoofing in kubernetes clusters. Runs with minimum capabilities, on default installations of kuberentes.☆74Updated 5 years ago
- Based on Lightspin proprietary data, research, and our tracking of cloud security trends in the market, our research team has compiled a …☆39Updated 2 years ago
- A penetration toolkit for container environment☆76Updated 2 months ago
- Security testing tool for Kubernetes, abusing kubelet credentials on public cloud providers.☆160Updated last year
- Proof of Concept exploit for Kubernetes CVE-2020-8559☆20Updated 4 years ago
- POC for CVE-2022-23648☆36Updated 2 years ago
- Links and resources for the O'Reilly Kubernetes Security book☆98Updated 3 years ago
- DEF CON 26 Workshop - Attacking & Auditing Docker Containers Using Open Source☆106Updated 5 years ago
- Intentionally vulnerable Go web app.☆42Updated 11 months ago
- k0otkit is a universal post-penetration technique which could be used in penetrations against Kubernetes clusters.☆278Updated 3 years ago
- Sample Spring Boot App Demonstrating RCE via Exposed env Actuator and H2 Database☆104Updated 4 years ago
- ☆233Updated 2 months ago
- Some helpful Helm Charts for pentesters☆38Updated 5 years ago
- PoC for CVE-2018-1002105.☆223Updated 5 years ago
- Kubolt utility for scanning public kubernetes clusters☆109Updated 5 months ago
- The Challenge for OWASP's Kubernetes CTF☆30Updated last year
- Detect and bypass Istio sidecar☆19Updated 3 years ago
- CVE-2020-10749 PoC (Kubernetes MitM attacks via IPv6 rogue router advertisements)☆25Updated 4 years ago
- ☆91Updated 6 months ago
- awesome resources about cloud native security 🐿☆309Updated last year