g3rzi / HackingKubernetes
This repository contain any information that can be used to hack Kubernetes
☆99Updated 2 years ago
Alternatives and similar repositories for HackingKubernetes:
Users that are interested in HackingKubernetes are comparing it to the libraries listed below
- Container Excape PoC for CVE-2022-0847 "DirtyPipe"☆78Updated 2 years ago
- Simple tool to decrypt Jenkins encrypted strings☆75Updated last year
- Executes commands in a container on a kubelet endpoint that allows anonymous authentication (default)☆112Updated 6 years ago
- Source Code Management Attack Toolkit☆214Updated 2 years ago
- Nuclei templates for K8S security scanning☆101Updated 3 years ago
- Post-exploit a compromised etcd, gain persistence and remote shell to nodes.☆74Updated 10 months ago
- Kubernetes POC for utilizing write mount to /var/log for getting a root on the host☆94Updated 4 years ago
- Workshop on Template Injection (6 exercises) covering Twig, Jinja2, Tornado, Velocity and Freemaker engines.☆125Updated 2 years ago
- CVE-2021-40346 PoC (HAProxy HTTP Smuggling)☆40Updated 3 years ago
- A fingerprint generation helper for nuclei network templates☆72Updated 2 years ago
- ☆124Updated 8 months ago
- Repository of CVE found by OCD people☆75Updated 8 months ago
- Exploit for CVE-2021-25741 vulnerability☆28Updated 3 years ago
- Simple extension that allows to run nuclei scanner directly from burp and transforms json results into the issues.☆29Updated last year
- Static code analysis tool based on Elasticsearch☆129Updated 4 years ago
- Source Code Management Attack Toolkit☆127Updated 2 years ago
- F5 BIG-IP RCE exploitation (CVE-2022-1388)☆88Updated 2 years ago
- Dockerized POC for CVE-2022-42889 Text4Shell☆75Updated 2 years ago
- A cli for cracking, testing vulnerabilities on Json Web Token(JWT)☆133Updated 3 weeks ago
- Kubernetes pentesting, hardening and hunting tools.☆62Updated 2 years ago
- RmiTaste allows security professionals to detect, enumerate, interact and exploit RMI services by calling remote methods with gadgets fro…☆107Updated 4 years ago
- GUI alternative to the Rubeus command line tool, for all your Kerberos exploit requirements☆182Updated 3 years ago
- Deobfuscate Log4Shell payloads with ease.☆161Updated 2 years ago
- Improve automated and semi-automated active scanning in Burp Pro☆61Updated 2 years ago
- Shell Simulation over Net-SNMP with extend functionality☆95Updated 4 years ago
- This is a dockerized application that is vulnerable to the Spring4Shell vulnerability (CVE-2022-22965).☆104Updated 2 years ago
- POC for CVE-2022-47966 affecting multiple ManageEngine products☆126Updated 2 years ago
- POC for CVE-2022-23648☆36Updated 3 years ago
- CVE-2022-41040 - Server Side Request Forgery (SSRF) in Microsoft Exchange Server☆89Updated 2 years ago
- A robust Red Team proxy written in Go.☆159Updated 3 years ago