quarkslab / minik8s-ctfLinks
A beginner-friendly CTF about Kubernetes security.
☆80Updated 3 years ago
Alternatives and similar repositories for minik8s-ctf
Users that are interested in minik8s-ctf are comparing it to the libraries listed below
Sorting:
- Kubernetes Pwnage for all☆56Updated 4 years ago
- insject is a tool for poking at containers. It enables you to run an arbitrary command in a container or any mix of Linux namespaces.☆50Updated 3 years ago
- ☆27Updated 3 weeks ago
- OAuth 2.0 Dynamic Security Scanner☆33Updated 4 years ago
- ☆28Updated 5 years ago
- Container Blackbox Security Auditing Tool: enumerates security configuration from within the target container☆105Updated 6 years ago
- Kubernetes Easter CTF☆59Updated 5 years ago
- Exploit CVE-2021-25735: Kubernetes Validating Admission Webhook Bypass☆17Updated 4 years ago
- Kubernetes Unhinged Shell 😎☆46Updated 3 years ago
- A collection of scripts, and tips and tricks for hacking k8s clusters and containers.☆136Updated last year
- ☆31Updated 2 years ago
- Blogpost series showcasing interesting cloud - web app security bugs☆49Updated 2 years ago
- This is a PoC exploit for CVE-2020-8559 Kubernetes Vulnerability☆54Updated 5 years ago
- A curated list of argument injection vectors☆41Updated 8 months ago
- Documentation of Semgrep: a fast, open-source, static analysis tool.☆44Updated this week
- UniSBOM is a tool to build a software bill of materials on any platform with a unified data format.☆36Updated 3 years ago
- ☆126Updated last year
- Utility for downloading and mounting EBS snapshots using the EBS Direct API's☆87Updated 7 months ago
- ☆102Updated 8 months ago
- ☆16Updated 2 years ago
- ☆60Updated 2 years ago
- Collection of Slides From My Conference Talks☆20Updated 2 years ago
- Security testing tool for Kubernetes, abusing kubelet credentials on public cloud providers.☆161Updated last year
- An Evil OIDC Server☆54Updated 3 years ago
- Reference architecture and proof of concept implementation for supply chain security gateway☆23Updated 2 years ago
- Ed is a tool used to identify and exploit accessible UNIX Domain Sockets☆27Updated 6 years ago
- An implementation of infrastructure-as-code scanning using dynamic tooling.☆56Updated 3 years ago
- Command line fuzzer and bruteforcer 🌪 wfuzz for command☆90Updated 3 years ago
- ☆29Updated 4 years ago
- DEbian Cve REproducer Tool☆27Updated 2 months ago