awesome-cloud-native-security
by Metarget
awesome listpushed almost 3 years ago
awesome resources about cloud native security 🐿
AI summary
Cloud Security Guide
A collection of resources and information on cloud-native security practices and techniques.
- stars
- 309
- forks
- 51
- watching
- 14
- awesome lists
- 2
- entries
- 232
What's in the list
232 links in 100 sections, with live GitHub stats.activeno commit in 2y
0 General
0 General / 2018绿盟科技容器安全技术报告 (2018-11)
0 General
0 General / Kubernetes Security: Operating Kubernetes Clusters and Applications Safely (Book, 2018-09-28)
0 General
0 General / MITRE ATT&CK framework for container runtime security with Falco. (2019-05-10)
0 General / MITRE ATT&CK framework for container runtime security with Falco. (2019-05-10) / Threat matrix for Kubernetes (Microsoft, 2020-04-02)
0 General / MITRE ATT&CK framework for container runtime security with Falco. (2019-05-10)
0 General
1 Offensive / 1.1 General
1 Offensive / 1.2 Kubernetes
1 Offensive / 1.2 Kubernetes / Walls Within Walls: What if your attacker knows parkour? (KubeCon 2019)
1 Offensive / 1.2 Kubernetes
1 Offensive / 1.2 Kubernetes / k0otkit:针对K8s集群的通用后渗透控制技术 (CIS 2020)
1 Offensive / 1.2 Kubernetes
1 Offensive / 1.2 Kubernetes / Advanced Persistence Threats: The Future of Kubernetes Attacks (RSA 2020)
1 Offensive / 1.2 Kubernetes
1 Offensive / 1.2 Kubernetes / Compromising Kubernetes Cluster by Exploiting RBAC Permissions (RSA 2020)
1 Offensive / 1.2 Kubernetes
1 Offensive / 1.2 Kubernetes / Kubernetes Privilege Escalation: Excessive Permissions in Popular Platforms
1 Offensive / 1.2 Kubernetes
1 Offensive / 1.2 Kubernetes / Command and KubeCTL: Real-world Kubernetes Security for Pentesters (Shmoocon 2020)
1 Offensive / 1.2 Kubernetes
1 Offensive / 1.2 Kubernetes / Attacking Kubernetes Clusters Through Your Network Plumbing: Part 1 (2020-11-05)
1 Offensive / 1.2 Kubernetes
1 Offensive / 1.2 Kubernetes / Understanding about CVE-2017–1002101 on kubernetes (2018-03-19)
1 Offensive / 1.2 Kubernetes
1 Offensive / 1.2 Kubernetes / Exploiting path traversal in kubectl cp (CVE-2018-1002100, 2018-05-04)
1 Offensive / 1.2 Kubernetes
1 Offensive / 1.2 Kubernetes / The Story of the First Kubernetes Critical CVE (CVE-2018-1002105, 2018-12-04)
1 Offensive / 1.2 Kubernetes
1 Offensive / 1.2 Kubernetes / Kubernetes man in the middle using LoadBalancer or ExternalIPs (CVE-2020-8554, 2020-12-08)
1 Offensive / 1.2 Kubernetes
1 Offensive / 1.2 Kubernetes / Exploiting and detecting CVE-2021-25735: Kubernetes validating admission webhook bypass (2021-04-28)
1 Offensive / 1.2 Kubernetes
1 Offensive / 1.2 Kubernetes / cr8escape: New Vulnerability in CRI-O Container Engine Discovered by CrowdStrike (CVE-2022-0811)
1 Offensive / 1.3 Container
1 Offensive / 1.3 Container / A Methodology for Penetration Testing Docker Systems (Bachelor Theses, 2020-01-17)
1 Offensive / 1.3 Container
1 Offensive / 1.3 Container / Container escape through open_by_handle_at (shocker exploit) (2014-06-18)
1 Offensive / 1.3 Container
1 Offensive / 1.3 Container / Dirty COW - (CVE-2016-5195) - Docker Container Escape (2017-09)
1 Offensive / 1.3 Container
1 Offensive / 1.3 Container / Escaping Docker container using waitid() – CVE-2017-5123 (2017-12-27)
1 Offensive / 1.3 Container
1 Offensive / 1.3 Container / CVE-2019-5736: Escape from Docker and Kubernetes containers to root on host (2019-02-13)
1 Offensive / 1.3 Container
1 Offensive / 1.3 Container / Felix Wilhelm's Twitter on the Escape Technique utilizing release_agent (2019-07-17)
1 Offensive / 1.3 Container
1 Offensive / 1.3 Container / Kubernetes Pod Escape Using Log Mounts (2019-08-01)
1 Offensive / 1.3 Container
1 Offensive / 1.3 Container / CVE-2019-19921: Volume mount race condition with shared mounts (2020-01-01)
1 Offensive / 1.3 Container
1 Offensive / 1.3 Container / Escaping Virtualized Containers (Black Hat 2020)
1 Offensive / 1.3 Container
1 Offensive / 1.3 Container / CVE-2020-14386: Privilege Escalation Vulnerability in the Linux kernel (2020-10-09)
1 Offensive / 1.3 Container
1 Offensive / 1.3 Container / host模式容器逃逸漏洞(CVE-2020-15257)技术分析 (2020-12-02)
1 Offensive / 1.3 Container
1 Offensive / 1.3 Container / runc mount destinations can be swapped via symlink-exchange to cause mounts outside the rootfs (CVE-2021-30465, 2021-05-30)
1 Offensive / 1.3 Container
1 Offensive / 1.3 Container / CVE-2021-22555: Turning \x00\x00 into 10000$ (2021-07-07)
1 Offensive / 1.3 Container
1 Offensive / 1.3 Container / Container Escape in 2021 (HITB 2021)
1 Offensive / 1.3 Container
1 Offensive / 1.3 Container / Overflow in netlink bytemsg length field allows attacker to override netlink-based container configuration (CVE-2021-43784, 2021-12-06)
1 Offensive / 1.3 Container
1 Offensive / 1.3 Container / Houdini’s Escape: Breaking the Resource Rein of Linux Control Groups (CCS 2019)
1 Offensive / 1.3 Container
1 Offensive / 1.4 Serverless
1 Offensive / 1.4 Serverless / Hacking Serverless Runtimes (Black Hat 2017)
1 Offensive / 1.4 Serverless
1 Offensive / 1.4 Serverless / How We Escaped Docker in Azure Functions (2021-01-27)
1 Offensive / 1.4 Serverless
1 Offensive / 1.6 Service Mesh
1 Offensive / 1.7 API Gateway
1 Offensive / 1.8 Windows Containers
1 Offensive / 1.8 Windows Containers / Well, That Escalated Quickly! How Abusing Docker API Led to Remote Code Execution, Same Origin Bypass and Persistence in The Hypervisor via Shadow Containers (Black Hat 2017)
1 Offensive / 1.8 Windows Containers
1 Offensive / 1.8 Windows Containers / Windows Server Containers Are Open, and Here's How You Can Break Out (2020-07-15)
1 Offensive / 1.8 Windows Containers
1 Offensive / 1.9 Tools
1 Offensive / 1.9 Tools / CDK - Zero Dependency Container Penetration Toolkit
1 Offensive / 1.9 Tools
1 Offensive / 1.9 Tools / kdigger - A context discovery tool for Kubernetes penetration testing
2 Defensive / 2.1 Standards and Benchmarks
2 Defensive / 2.1 Standards and Benchmarks / NIST.SP.800-204 Security Strategies for Microservices-based Application Systems (2019-08)
2 Defensive / 2.2 Kubernetes
2 Defensive / 2.3 Container
2 Defensive / 2.4 Secure Container
2 Defensive / 2.5 Network
2 Defensive / 2.6 Practices
2 Defensive / 2.7 Tools
2 Defensive / 2.7 Tools / Falco
2 Defensive / 2.7 Tools
3 Incidents
3 Incidents / Coinminer, DDoS Bot Attack Docker Daemon Ports (2020-05-06)
3 Incidents
3 Incidents / NSA, Partners Release Cybersecurity Advisory on Brute Force Global Cyber Campaign (2021-07-01)
3 Incidents
Nothing in this list matches your filter.
Featured in 2 awesome lists
Each link jumps to the spot where the list mentions awesome-cloud-native-security.
More related projects
komodorio/validkube775
r0binak/mtkpi217
hummerrisk/hummerrisk1.8K
ibrahimjelliti/ckss-certified-kubernetes-security-specialist478
alexivkin/kubepwn54
walidshaari/certified-kubernetes-security-specialist2K
koli/kong-ingress93
aws/eks-distro1.4K
voyagermesh/voyager1.4K
rootsongjc/kubernetes-vagrant-centos-cluster1.9K
cdwv/efk-stack-helm56