raesene / kind-of-insecure
Deliberately insecure Kubernetes test clusters built using kind
☆11Updated 5 years ago
Related projects ⓘ
Alternatives and complementary repositories for kind-of-insecure
- Executes commands in a container on a kubelet endpoint that allows anonymous authentication (default)☆113Updated 5 years ago
- Burp Extension for AWS Signing☆86Updated last month
- Scan for and exploit Consul agents☆40Updated 5 years ago
- Kubernetes Pwnage for all☆54Updated 4 years ago
- ☆27Updated last week
- Jekyll Files for cloudsecwiki.com☆49Updated 3 years ago
- Ruby command-line interface to Burp Suite's REST API☆59Updated 4 years ago
- An AWS Lambda vulnerable application written in flask.☆48Updated 7 years ago
- Hayat is a script for report and analyze Google Cloud Platform resources.☆79Updated 4 years ago
- Some helpful Helm Charts for pentesters☆38Updated 5 years ago
- Container Blackbox Security Auditing Tool: enumerates security configuration from within the target container☆103Updated 5 years ago
- Proof-of-concept CORS exploitation tool.☆34Updated 5 years ago
- OAuth Security Cheatsheet☆39Updated 10 years ago
- Writeup of CVE-2017-1002101 with sample "exploit"/escape☆35Updated 6 years ago
- ☆28Updated 4 years ago
- ☆25Updated 3 years ago
- Repository for all the workshop content delivered at nullcon X on 1st of March 2019☆81Updated 5 years ago
- A Burp extension to show the Collaborator client in a tab☆36Updated last year
- Whitebox evaluation of effective S3 object permissions, to identify publicly accessible files.☆74Updated 2 years ago
- This repo gives an overview of some GCP metadata API attack and defend patterns☆76Updated 4 years ago
- JWT Fuzzer for BurpSuite. Adds an Intruder hook for on-the-fly JWT fuzzing.☆98Updated 5 years ago
- Simple trick to increase readability of exceptions raised by Burp extensions written in Python☆43Updated 7 years ago
- Pentester-focused Docker registry tool to enumerate and pull images☆104Updated 4 years ago
- This is a set of tips and reminders for pentesting processes and scripts/programs. Initially for personal use, but if anyone else finds t…☆52Updated 4 years ago
- ☆20Updated 6 years ago
- Reverse or bind shell catcher which uprgrades the caught shell to be more like a regular shell☆27Updated 5 years ago
- Serverless Workshop☆16Updated last year
- ☆31Updated 4 years ago
- DEF CON 26 Workshop - Attacking & Auditing Docker Containers Using Open Source☆106Updated 5 years ago