HackingKubernetes

Kubernetes vulnerability scan

A collection of information and resources to help attackers explore vulnerabilities in Kubernetes clusters.

This repository contain any information that can be used to hack Kubernetes

GitHub

99 stars
2 watching
16 forks
last commit: over 2 years ago
Linked from 1 awesome list


Backlinks from these awesome lists:

Related projects:

Repository Description Stars
controlplaneio/kubesec Analyzes Kubernetes resources for security vulnerabilities 1,238
controlplaneio/kubectl-kubesec Scans Kubernetes resources for security vulnerabilities using kubesec.io 509
kathanp19/gaussrf A tool for identifying potential vulnerabilities in websites by fetching known URLs and filtering out ones with open redirects or SSRF parameters. 165
checkmarx/kics A tool for detecting security vulnerabilities and compliance issues in infrastructure-as-code projects 2,093
stackrox/stackrox A platform for analyzing and securing container environments in Kubernetes clusters. 1,124
eddiezab/aggressor-scripts A collection of scripts and tools for testing and exploiting network and system vulnerabilities. 1
yogeshkk/k8spurger A script that scans Kubernetes clusters for unused resources and reports them in a usable format. 254
cyberark/kubiscan Identifies and reports on permissions in Kubernetes clusters. 1,323
1ndianl33t/gf-patterns A toolset for identifying potential security vulnerabilities and patterns in web applications 1,216
hackthelegacy/hack400tool A set of tools for gathering information and exploiting vulnerabilities in IBM Power Systems 96
netspi/microburst A collection of scripts and functions to assess Microsoft Azure security from various attack vectors 2,046
gand3lf/semgrepper An extension to Burp Suite that integrates Semgrep for vulnerability scanning and analysis 87
m0nad/hellraiser Scans networks to identify vulnerabilities by correlating CPEs with CVEs using an API 562
ke0z/vulchatgpt An IDA PRO plugin to analyze binaries for potential vulnerabilities using AI-powered decompilation and static analysis 352
kapejod/rtpnatscan A command line tool to scan RTP proxies for vulnerabilities to NAT stealing attacks 24