snyk-labs / kubernetes-goof
Kubernetes Stranger Danger
☆57Updated last year
Related projects ⓘ
Alternatives and complementary repositories for kubernetes-goof
- book website☆66Updated 2 years ago
- Supporting code and demos for KubeCon EU 2023 talk "Malicious Compliance: Reflections on Trusting Container Image Scanners"☆66Updated 11 months ago
- Response Engine for managing threats in your Kubernetes☆132Updated this week
- Process documentation, non-code deliverables, and miscellaneous artifacts of Kubernetes SIG Security☆170Updated 2 weeks ago
- ☆91Updated 6 months ago
- ☆21Updated this week
- A collection of tools to improve your containerized apps security posture☆131Updated 5 months ago
- BadRobot - Operator Security Audit Tool☆215Updated this week
- NamespaceHound is the tool for detecting the risk of potential namespace crossing violations in multi-tenant clusters.☆59Updated 8 months ago
- All-in-one auditing toolkit for identifying common security issues in managed Kubernetes environments. Currently supports Amazon EKS.☆318Updated 10 months ago
- Kubernetes audit logging, when you don't control the control plane☆65Updated this week
- The regolibrary package contains the controls Kubescape uses for detecting misconfigurations in Kubernetes manifests.☆121Updated this week
- Use Snyk to find and fix vulnerabilities in your Kubernetes workloads☆87Updated this week
- A Kubectl plugin that can detect if any of your workloads or manifest files are mounting the docker.sock volume☆176Updated last year
- Code example from the book "Certified Kubernetes Security Specialist (CKS) Study Guide" published by O'Reilly Media.☆64Updated 3 months ago
- Shortlist of preparation materials to pass CKS exam☆65Updated 2 years ago
- Falco plugins registry☆86Updated this week
- Sources used for the Buoyant Service Mesh Academy, for your entertainment and knowledge, and as a base for getting things done.☆68Updated last month
- Create Kubernetes AdmissionReview requests from Kubernetes resource manifests☆109Updated 2 weeks ago
- Sneefer is a PoC project showing how to filter out irrelevent vulnerabilities from container image vulnerability scan results. It is base…☆26Updated last year
- Threat-informed defense for cloudnative: Reference Implementation of a so-called Honeycluster - for kind (and GKE, RKE2, AKS)☆22Updated 3 weeks ago
- Generate a variety of suspect actions that are detected by Falco rulesets☆94Updated this week
- a tool to audit the istio service mesh☆173Updated 3 years ago
- 🧰 Multi Tool Kubernetes Pentest Image☆215Updated 2 months ago
- Research on various techniques to bypass default falco ruleset (based on falco v0.28.1).☆80Updated 9 months ago
- References for CKS Exam Objectives - Certified Kubernetes Security Specialist☆143Updated last year
- Runtime security plug to protect user containers☆65Updated this week
- An admission controller service and kubectl plugin to handle container drift in K8s clusters☆125Updated 2 years ago
- A simple WebUI with latest events from Falco☆112Updated this week