jtesta / k8s_spoofilizerLinks
Creates Kubernetes Golden Tickets through ServiceAccount token forging and user certificate forging.
☆50Updated 9 months ago
Alternatives and similar repositories for k8s_spoofilizer
Users that are interested in k8s_spoofilizer are comparing it to the libraries listed below
Sorting:
- WolfPack combines the capabilities of Terraform and Packer to streamline the deployment of red team redirectors on a large scale.☆148Updated 6 months ago
- JamfHound is a python3 project designed to collect and identify attack paths in Jamf Pro tenants based on existing object permissions by …☆110Updated 3 months ago
- A tool to help pentesters quickly identify privileged principals and second-order privilege escalation opportunities in unfamiliar AWS ac…☆137Updated last month
- ☆82Updated last month
- CaptainCredz is a modular and discreet password-spraying tool.☆133Updated 5 months ago
- Sniff and attack networks that use IP-in-IP or VXLAN encapsulation protocols.☆23Updated last year
- GitHub Actions Cache Native Malware - for Educational and Research Purposes only.☆76Updated 3 weeks ago
- Tools for attacking Azure Function Apps☆87Updated 2 months ago
- Eve is a JAMF exploitation toolkit used to interact with locally hosted JAMF servers and those hosted on jamfcloud.com.☆39Updated 3 months ago
- Offensive Kubernetes Threat Matrix -- kubenomicon.com☆47Updated 4 months ago
- Determine privileges from cloud credentials via brute-force testing.☆66Updated last year
- A tool for quickly evaluating IAM permissions in AWS.☆60Updated 2 years ago
- ☆50Updated last year
- Putting a leash on naughty AWS permissions☆132Updated 3 months ago
- Cloud subdomains identification tool☆62Updated 8 months ago
- Artifact monitoring that ensures fairplay☆78Updated 11 months ago
- ☆40Updated last month
- Source Code Management Attack Toolkit☆135Updated 3 years ago
- ☆47Updated last year
- GCP-Hound - Google Cloud Security Attack Path Discovery Tool - v1.1.1☆67Updated 2 months ago
- Tool created for Red Team to test default credentials on SSH and WinRM and then execute scripts with those credentials before the passwor…☆40Updated 2 years ago
- EC2StepShell is an AWS post-exploitation tool for getting high privileges reverse shells in public or private EC2 instances.☆68Updated last year
- Hijack a slack bot to phish your way in☆57Updated 5 months ago
- Proof of Concepts for malicious maintainers: How to Tamper with Releases built with GitHub Actions Worfklows, presented at fwd:cloudsec E…☆77Updated 3 months ago
- POC tool to create signed AWS API GET requests to bypass Guard Duty alerting of off-instance credential use via SSRF☆59Updated 2 years ago
- ☆133Updated 3 months ago
- A vulnerable environment for exploring common GCP misconfigurations and vulnerabilities☆31Updated last month
- ☆101Updated last month
- Webshell agent in aspx and php☆28Updated 2 weeks ago
- tool for enumeration & bulk download of sensitive files found in SharePoint environments☆77Updated 8 months ago