krisnova / kush
Kubernetes Unhinged Shell 😎
☆45Updated 2 years ago
Alternatives and similar repositories for kush:
Users that are interested in kush are comparing it to the libraries listed below
- egrets monitors egress☆46Updated 4 years ago
- ☆68Updated last month
- insject is a tool for poking at containers. It enables you to run an arbitrary command in a container or any mix of Linux namespaces.☆50Updated 3 years ago
- Research on various techniques to bypass default falco ruleset (based on falco v0.28.1).☆81Updated last year
- A beginner-friendly CTF about Kubernetes security.☆77Updated 2 years ago
- Container Blackbox Security Auditing Tool: enumerates security configuration from within the target container☆106Updated 6 years ago
- Simple Command Line Tool to Enumerate Slack Workspace Names from Slack Webhook URLs.☆40Updated last year
- Konstellation is a configuration-driven CLI tool to enumerate cloud resources and store the data into Neo4j.☆21Updated last year
- Generative and mutative fuzzer for Kubernetes admission controller chains by automatically parsing the cluster api specification.☆72Updated last year
- ☆31Updated 2 years ago
- An implementation of infrastructure-as-code scanning using dynamic tooling.☆56Updated 3 years ago
- Going Florida on container keyring masks. A tool to demonstrate the ineffectivity containers have on isolating Linux Kernel keyrings.☆43Updated last year
- K8s API Honeypot with Active Defense Capabilities☆40Updated last year
- Sniff and attack networks that use IP-in-IP or VXLAN encapsulation protocols.☆21Updated 6 months ago
- A collection of projects demonstrating various commandline cloaking techniques on Linux☆57Updated 2 years ago
- ☆93Updated last month
- Create tar/zip archives that try to exploit zipslip vulnerability.☆47Updated 6 months ago
- Adversary emulation for EDR/SIEM testing (macOS/Linux)☆40Updated last year
- An Evil OIDC Server☆53Updated 2 years ago
- ☆17Updated 2 years ago
- This terraform provider can be used to get remote code execution by injecting a dummy resource in a writeable state file.☆52Updated last month
- ☆25Updated 10 months ago
- WAF bypass PoC☆46Updated last year
- A small library to alter AWS API requests; Used for fuzzing research☆22Updated last year
- Security testing tool for Kubernetes, abusing kubelet credentials on public cloud providers.☆162Updated last year
- ☆58Updated last year
- ☆27Updated 4 months ago
- POC tool to create signed AWS API GET requests to bypass Guard Duty alerting of off-instance credential use via SSRF☆58Updated last year
- A tool suite for use during system assessments.☆35Updated last month
- Exploit CVE-2021-25735: Kubernetes Validating Admission Webhook Bypass☆18Updated 3 years ago