redhuntlabs / KubeStalk
KubeStalk discovers Kubernetes and related infrastructure based attack surface from a black-box perspective.
β171Updated 3 weeks ago
Alternatives and similar repositories for KubeStalk:
Users that are interested in KubeStalk are comparing it to the libraries listed below
- π§° Multi Tool Kubernetes Pentest Imageβ222Updated 5 months ago
- AWACS for RBAC. Tool for auditing CRUD permissions in Kubernetes' RBAC.β44Updated 9 months ago
- Damn Vulnerable Kubernetes App (DVKA) is a series of apps deployed on Kubernetes that are damn vulnerable.β118Updated this week
- NamespaceHound is the tool for detecting the risk of potential namespace crossing violations in multi-tenant clusters.β79Updated last month
- β43Updated 3 years ago
- β92Updated 2 weeks ago
- Post-exploit a compromised etcd, gain persistence and remote shell to nodes.β73Updated 9 months ago
- Tool for auditing RBACs in Kubernetesβ215Updated last year
- Security testing tool for Kubernetes, abusing kubelet credentials on public cloud providers.β162Updated last year
- β175Updated 2 months ago
- Kubernetes focused container assessment and context discovery tool for penetration testingβ448Updated 8 months ago
- Cloud agnostic IAM permissions enumeratorβ140Updated 5 months ago
- Kubernetes exploitation toolβ361Updated 6 months ago
- Evaluate the RBAC permissions of Kubernetes identities through policies written in Regoβ343Updated last year
- A collection of tools to improve your containerized apps security postureβ139Updated 8 months ago
- Kubernetes Security Checklist and Requirements - All in One (authentication, authorization, logging, secrets, configuration, network, worβ¦β474Updated 3 years ago
- OWASP Kubernetes security and compliance tool [WIP]β105Updated last year
- a tool to audit the istio service meshβ174Updated 3 years ago
- truffleproc β hunt secrets in process memory (TruffleHog & gdb mashup)β114Updated last year
- This terraform provider can be used to get remote code execution by injecting a dummy resource in a writeable state file.β52Updated 3 weeks ago
- π Visualize and explore IaC βοΈ Create and share notes in VS Code π€ Sync notes and findings in real-time with friendsβ71Updated last year
- All-in-one auditing toolkit for identifying common security issues in managed Kubernetes environments. Currently supports Amazon EKS.β334Updated last year
- Protect against subdomain takeoverβ92Updated 8 months ago
- Curating Falco rules with MITRE ATT&CK Matrixβ77Updated 11 months ago
- kubernetes-for-soc aims to fast-track the learning curve for SOC analysts by enabling them to swiftly grasp the essential concepts and knβ¦β51Updated last year
- Open Source runtime scanner for k8s cluster and perform security audit checks based on CIS Kubernetes Benchmark specificationβ65Updated last month
- KubeClarity is a tool for detection and management of Software Bill Of Materials (SBOM) and vulnerabilities of container images and filesβ¦β34Updated 4 months ago
- Research on various techniques to bypass default falco ruleset (based on falco v0.28.1).β80Updated last year