dynatrace-oss / unguard
Unguard is an insecure cloud-native microservices demo application.
☆49Updated last week
Alternatives and similar repositories for unguard:
Users that are interested in unguard are comparing it to the libraries listed below
- NamespaceHound is the tool for detecting the risk of potential namespace crossing violations in multi-tenant clusters.☆82Updated 3 months ago
- Supporting code and demos for KubeCon EU 2023 talk "Malicious Compliance: Reflections on Trusting Container Image Scanners"☆67Updated last year
- Research on various techniques to bypass default falco ruleset (based on falco v0.28.1).☆81Updated last year
- Response Engine for managing threats in your Kubernetes☆154Updated last week
- Damn Vulnerable Kubernetes App (DVKA) is a series of apps deployed on Kubernetes that are damn vulnerable.☆138Updated 2 weeks ago
- K8s API Honeypot with Active Defense Capabilities☆40Updated last year
- This repo. is archived. The utility is now at: https://github.com/CycloneDX/sbom-utility☆60Updated 2 years ago
- kubernetes-for-soc aims to fast-track the learning curve for SOC analysts by enabling them to swiftly grasp the essential concepts and kn…☆54Updated last year
- ☆94Updated 2 months ago
- Generate a variety of suspect actions that are detected by Falco rulesets☆103Updated 3 weeks ago
- Kubernetes audit logging, when you don't control the control plane☆73Updated last week
- Discover vulnerabilities and container image misconfiguration in production environments.☆55Updated last month
- ☆21Updated 4 months ago
- Tooling to simulate runtime attacks and test default runtime detections from Datadog Cloud Security Management.☆30Updated 6 months ago
- A collection of tools to improve your containerized apps security posture☆142Updated 10 months ago
- ☆25Updated 11 months ago
- ☆70Updated 2 months ago
- pySigma backend for generating Grafana Loki/LogQL rules☆44Updated last week
- Falco plugins registry☆92Updated last week
- PEACH - a step-by-step framework for modeling and improving SaaS and PaaS tenant isolation, by managing the attack surface exposed by use…☆70Updated 2 years ago
- Simple root privilege escalation detection using eBPF 🐝☆12Updated 2 months ago
- Generative and mutative fuzzer for Kubernetes admission controller chains by automatically parsing the cluster api specification.☆74Updated last year
- Threat Modeling (based on STRIDE approach) for Kubernetes systems.☆21Updated 6 months ago
- ☆176Updated 4 months ago
- a tool to audit the istio service mesh☆173Updated 3 years ago
- Threat-informed defense for cloudnative: Reference Implementation of a so-called Honeycluster - for kind (and GKE, RKE2, AKS)☆36Updated this week
- Runtime security plug to protect user containers☆65Updated last month
- vexctl is a tool to attest VEX impact statements☆44Updated 2 years ago
- A full insecure kubernetes application for testing security tools☆70Updated 2 weeks ago
- The security workflow engine!☆109Updated this week