Explore 33 curated tools and resources
Export Kubernetes events for observability and alerting purposes with flexible routing options.
kube-hunter hunts for security weaknesses in Kubernetes clusters.
An open-source security tool for AWS, Azure, Google Cloud, and Kubernetes security assessments and audits.
Docker image with essential tools for Kubernetes penetration testing.
Managed Kubernetes Inspection Tool leveraging FOSS tools to query and validate security-related settings.
Collection of Kubernetes manifests creating pods with elevated privileges for security testing.
Helix is a versatile honeypot designed to mimic the behavior of various protocols including Kubernetes API server, HTTP, TCP, and UDP.
A service for better visibility on networking issues in Kubernetes clusters by detecting traffic denied by iptables.
Intentionally vulnerable Kubernetes cluster environment for learning and practicing Kubernetes security.
Beelzebub is an advanced honeypot framework for detecting and analyzing cyber attacks, with integration options for OpenAI GPT-3 and deployment on Kubernetes using Helm.
A collection of tools to debug and inspect Kubernetes resources and applications, managing eBPF programs execution and mapping kernel primitives to Kubernetes resources.
IAM Zero detects IAM issues and suggests least-privilege policies for AWS and other cloud platforms.
gVisor is an application kernel that provides isolation for running sandboxed containers.
Toolkit for building custom minimal, immutable Linux distributions with secure defaults.
Contains various use cases of Kubernetes Network Policies and sample YAML files.
Gatekeeper is a policy management tool for Kubernetes that provides an extensible, parameterized policy library and native Kubernetes CRDs for instantiating and extending the policy library.
Kubeadm is a tool for creating Kubernetes clusters with best practices.
A cross-platform post-exploitation HTTP/2 Command & Control server and agent dedicated for containerized environments
Kubernetes security platform with industry standard open source utilities for securing Kubernetes clusters and apps.
Encrypt Kubernetes Secrets into SealedSecrets for safe storage and controlled decryption within the cluster.
minikube implements a local Kubernetes cluster for easy application development and supports various Kubernetes features.
Static code analyzer for Infrastructure as Code with 500+ security policies and support for various IaC tools and cloud platforms.
Create checkpoint snapshots of the state of running pods for later off-line analysis.
Real-time, eBPF-based Security Observability and Runtime Enforcement component
Redirects EC2 metadata API traffic to a container that retrieves temporary AWS credentials and proxies other calls to the EC2 metadata API.
Learn how to secure applications in Kubernetes Engine by granting varying levels of privilege based on requirements.
Exploit that launches a process on the host from within a Docker container run with the --privileged flag by abusing the Linux cgroup v1 “notification on release” feature.
Romana automates cloud native network creation and secures applications with a distributed firewall.
BunkerWeb is a next-generation and open-source Web Application Firewall (WAF) with seamless integration and user-friendly customization options.
Security-Guard helps secure microservices and serverless containers by detecting and blocking exploits.
A workload policy enforcement tool for Kubernetes with various supported policies and configuration options.
Kube-bench is a tool for checking Kubernetes security based on CIS Kubernetes Benchmark.
An AI-powered career platform that automates the creation of cybersecurity job application materials and provides company-specific insights for job seekers.
Fabric Platform is a cybersecurity reporting solution that automates and standardizes report generation, offering a private-cloud platform, open-source tools, and community-supported templates.
Stay ahead in cybersecurity. Get the week's top cybersecurity news and insights in 8 minutes or less.
Wiz Cloud Security Platform is a cloud-native security platform that enables security, dev, and devops to work together in a self-service model, detecting and preventing cloud security threats in real-time.
A cybersecurity platform that offers vulnerability scanning, Windows Defender and 3rd party AV management, and MFA compliance reporting, among other features.
Adversa AI is a cybersecurity company that provides solutions for securing and hardening machine learning, artificial intelligence, and large language models against adversarial attacks, privacy issues, and safety incidents across various industries.