AppSec & Pentest
search
⌘Ctrlk
AppSec & Pentest
  • Sandboxes, Containers, Virtualization
    • Какие бывают
    • Kubernetes
      • About
      • Tools
      • Components
      • Concepts
      • Security
      • Learning
      • Conferences & Events
    • Container Runtime Interface (CRI)
    • Red Hat OpenShift Container Platform (OCP)
    • VMWare
    • Tools
  • Cloud
    • Google Cloud Platform (GCP)
    • Azure
    • AWS
    • Yandex Cloud
    • Another platforms
    • OpenStack
    • Tools
    • Papers
gitbookPowered by GitBook
block-quoteOn this pagechevron-down
  1. Sandboxes, Containers, Virtualizationchevron-right
  2. Kubernetes

Security

Pod Security Policy: https://kubernetes.io/docs/concepts/security/pod-security-standards/arrow-up-right

Статья по безопасности кубов: https://kubernetes.io/blog/2018/07/18/11-ways-not-to-get-hacked/arrow-up-right

Инструмент для анализа k8s: https://github.com/inguardians/peiratesarrow-up-right

Awesome Security k8s: https://github.com/magnologan/awesome-k8s-securityarrow-up-right

Еще какой-то cheat sheet: https://gitlab.com/gitlab-com/gl-security/security-operations/gl-redteam/red-team-tech-notes/-/blob/master/K8s-GKE-attack-notes/README.mdarrow-up-right

k8s goat: https://madhuakula.com/kubernetes-goat/arrow-up-right

https://github.com/kabachook/k8s-securityarrow-up-right

Tools and Methods for Auditing Kubernetes RBAC Policies https://www.nccgroup.trust/us/about-us/newsroom-and-events/blog/2019/august/tools-and-methods-for-auditing-kubernetes-rbac-policies/arrow-up-right

PreviousConceptschevron-leftNextLearningchevron-right

Last updated 2 years ago