AppSec & Pentest
Ctrlk
  • Sandboxes, Containers, Virtualization
    • Какие бывают
    • Kubernetes
      • About
      • Tools
      • Components
      • Concepts
      • Security
      • Learning
      • Conferences & Events
    • Container Runtime Interface (CRI)
    • Red Hat OpenShift Container Platform (OCP)
    • VMWare
    • Tools
  • Cloud
    • Google Cloud Platform (GCP)
    • Azure
    • AWS
    • Yandex Cloud
    • Another platforms
    • OpenStack
    • Tools
    • Papers
Powered by GitBook
On this page

Was this helpful?

  1. Sandboxes, Containers, Virtualization
  2. Kubernetes

Security

Pod Security Policy: https://kubernetes.io/docs/concepts/security/pod-security-standards/

Статья по безопасности кубов: https://kubernetes.io/blog/2018/07/18/11-ways-not-to-get-hacked/

Инструмент для анализа k8s: https://github.com/inguardians/peirates

Awesome Security k8s: https://github.com/magnologan/awesome-k8s-security

Еще какой-то cheat sheet: https://gitlab.com/gitlab-com/gl-security/security-operations/gl-redteam/red-team-tech-notes/-/blob/master/K8s-GKE-attack-notes/README.md

k8s goat: https://madhuakula.com/kubernetes-goat/

https://github.com/kabachook/k8s-security

Tools and Methods for Auditing Kubernetes RBAC Policies https://www.nccgroup.trust/us/about-us/newsroom-and-events/blog/2019/august/tools-and-methods-for-auditing-kubernetes-rbac-policies/

PreviousConceptsNextLearning

Last updated 2 years ago

Was this helpful?