krisnova / hack
Kubernetes security and vulnerability tools and utilities.
☆56Updated 3 years ago
Alternatives and similar repositories for hack:
Users that are interested in hack are comparing it to the libraries listed below
- Kubernetes admission webhook that uses cosign verify to check the subject and issuer of the image matches what you expect☆23Updated this week
- Kubernetes security scanner based on the open-source container vulnerability scanner Trivy.☆23Updated 4 years ago
- Cloud Native Security Hub - Security Resources☆54Updated 4 years ago
- a tool to audit the istio service mesh☆174Updated 3 years ago
- ☆29Updated 3 weeks ago
- Owasp Zap chart for Kubernetes☆48Updated 3 years ago
- Dockerfile Security Checker using OPA Rego policies with Conftest☆59Updated 2 years ago
- RBAC in Kubernetes visualizer☆24Updated 5 years ago
- ☆39Updated 3 years ago
- Kubernetes audit logging, when you don't control the control plane☆67Updated this week
- Kubernetes Pod RBAC Breakout☆37Updated last year
- GitHub action for automating KubeLinter.☆33Updated last month
- This is just a proof-of-concept project that aims to sign and verify container images using cosign and OPA (Open Policy Agent)☆62Updated 3 years ago
- An admission controller service and kubectl plugin to handle container drift in K8s clusters☆124Updated 3 years ago
- ☆25Updated 9 months ago
- The Container Security Book—a free book for practitioners☆82Updated 4 years ago
- Kubernetes Admission Controller for Image Scanning using OPA☆50Updated last year
- Simple tool that allows you to detect imposter commits in GitHub Actions workflows.☆23Updated 2 months ago
- A simple tool for converting Rego (OPA) rule into command.☆28Updated 2 years ago
- Darkbit Cloud Security Tools☆25Updated 4 years ago
- Demos for several kubernetes security features☆63Updated last month
- ☆22Updated 10 months ago
- book website☆67Updated 3 years ago
- Sneefer is a PoC project showing how to filter out irrelevent vulnerabilities from container image vulnerability scan results. It is base…☆26Updated last year
- Kubernetes Native, Runtime Container Image Scanning☆39Updated 2 years ago
- ☆35Updated 3 years ago
- Piggy is a tool built for supporting AWS Secret Manager with Kubernetes. It has abilities to mutating Pods, unseal secrets and inject int…☆34Updated 2 weeks ago
- ☆9Updated 4 years ago
- Python client and SDK for Falco☆20Updated 3 years ago
- Modular Kubernetes lab which provides an easy and streamlined way to deploy a test cluster with support for different components.☆52Updated last year