madhuakula / spotterLinks
Spotter is a comprehensive Kubernetes security scanner that uses CEL-based rules to identify security vulnerabilities, misconfigurations, and compliance violations across your Kubernetes clusters, manifests, and CI/CD pipelines.
☆38Updated last month
Alternatives and similar repositories for spotter
Users that are interested in spotter are comparing it to the libraries listed below
Sorting:
- insject is a tool for poking at containers. It enables you to run an arbitrary command in a container or any mix of Linux namespaces.☆50Updated 3 years ago
- ☆60Updated 2 years ago
- HoneyZure is a honeypot tool specifically designed for Azure environments, fully provisioned through Terraform. It leverages a Log Analyt…☆16Updated last year
- python3 scripts to help with aws triage needs☆15Updated 3 years ago
- A PoC to Simulate Ransomware Attack on AWS Environment☆32Updated last year
- ☆26Updated last year
- ☆39Updated last year
- Automated vulnerability discovery and annotation☆67Updated last year
- ☆47Updated 2 weeks ago
- 🌐 Visualize and explore IaC ✒️ Create and share notes in VS Code 🤝 Sync notes and findings in real-time with friends☆74Updated last year
- A Golang library for interacting with the EPSS (Exploit Prediction Scoring System).☆30Updated 8 months ago
- Sniff and attack networks that use IP-in-IP or VXLAN encapsulation protocols.☆23Updated last year
- Container Blackbox Security Auditing Tool: enumerates security configuration from within the target container☆105Updated 6 years ago
- Proof of Concepts for malicious maintainers: How to Tamper with Releases built with GitHub Actions Worfklows, presented at fwd:cloudsec E…☆73Updated last month
- Scan your account for the use of untrusted AMIs☆29Updated last month
- WAF bypass PoC☆49Updated 2 years ago
- Tool to automate takeover of DigitalOcean Kubernetes cluster. Check out the blog post for more info.☆17Updated 6 years ago
- ☆14Updated 4 months ago
- Salesforce Policy Deviation Checker☆30Updated 5 years ago
- ☆21Updated last year
- Tool to tackle problematic dangling domains in Amazon Web Services.☆14Updated 8 years ago
- An implementation of infrastructure-as-code scanning using dynamic tooling.☆56Updated 3 years ago
- ☆18Updated last year
- An open source Wireshark extcap to make ad hoc mirroring of AWS EC2 traffic easier☆19Updated 10 months ago
- ☆17Updated 8 months ago
- egrets monitors egress☆46Updated 5 years ago
- Dusseldorf is an out-of-band security tool to help in security research.☆39Updated last week
- ☆129Updated 2 months ago
- Konstellation is a configuration-driven CLI tool to enumerate cloud resources and store the data into Neo4j.☆31Updated 3 months ago
- Create tar/zip archives that try to exploit zipslip vulnerability.☆48Updated last year