krol3 / kubernetes-security-checklist
Awesome resources about Security in Kubernetes
☆40Updated last year
Alternatives and similar repositories for kubernetes-security-checklist:
Users that are interested in kubernetes-security-checklist are comparing it to the libraries listed below
- Container 📦 Security 🔐 Best Practices Checklist 📋 & Slides☆65Updated 4 years ago
- Research on various techniques to bypass default falco ruleset (based on falco v0.28.1).☆80Updated 11 months ago
- The OWASP DevSecOps Guideline explains how we can implement a secure pipeline and use best practices and introduce tools that we can use …☆62Updated 7 months ago
- OWASP Kubernetes Security Testing Guide☆37Updated 4 months ago
- ☆92Updated 8 months ago
- WAF bypass PoC☆45Updated last year
- OWASP Foundation Web Respository☆34Updated 4 months ago
- Protect against subdomain takeover☆93Updated 7 months ago
- Discover vulnerabilities and container image misconfiguration in production environments.☆54Updated this week
- A compilation of Software Supply Chain Security resources including initiatives, standards, regulations, organizations, vendors, tooling,…☆130Updated 11 months ago
- A deliberately vulnerable Kubernetes cluster☆120Updated last year
- CNAPPgoat is an open source project designed to modularly provision vulnerable-by-design components in cloud environments.☆271Updated 4 months ago
- ☆171Updated last month
- ☆235Updated 4 months ago
- Kubernetes Pwnage for all☆56Updated 4 years ago
- PEACH - a step-by-step framework for modeling and improving SaaS and PaaS tenant isolation, by managing the attack surface exposed by use…☆66Updated 2 years ago
- PESD (Proxy Enriched Sequence Diagrams) Exporter converts Burp Suite's proxy traffic into interactive diagrams☆101Updated this week
- ☆43Updated 3 years ago
- OWASP Foundation Web Respository☆42Updated 4 months ago
- A full insecure kubernetes application for testing security tools☆64Updated last week
- Tool for auditing RBACs in Kubernetes☆215Updated 11 months ago
- A curated list of Software Component Analysis (SCA) books, courses - free and paid, videos, tools, and tutorials.☆99Updated last month
- Based on Lightspin proprietary data, research, and our tracking of cloud security trends in the market, our research team has compiled a …☆39Updated 2 years ago
- Cloud agnostic IAM permissions enumerator☆138Updated 4 months ago
- An AWS IAM policy statement parser and query tool.☆166Updated 11 months ago
- Script to audit GitHub Action Workflow files for potential vulnerabilities.☆153Updated 4 months ago
- Awesome list for cloud security related projects☆79Updated 2 years ago
- GCP GOAT is the vulnerable application for learn the GCP Security☆63Updated last year
- A comprehensive, systematic and actionable way to understand attacker behaviors and techniques with respect to the software supply chain☆89Updated 11 months ago
- ☆124Updated 6 months ago