A collection of manifests that create pods with different elevated privileges, demonstrating the impact of allowing security-sensitive pod attributes like hostNetwork, hostPID, hostPath, hostIPC, and privileged. The collection includes various Bad Pods with different configurations for testing and learning purposes.
FEATURES
ALTERNATIVES
A setuid implementation of a subset of user namespaces, providing a way to run unprivileged containers without requiring root privileges.
Open-source cloud-agnostic resource manager for analyzing and managing cloud cost, usage, security, and governance.
Centrally Manage Cloud Firewall Rules with AWS Firewall Manager
A customized AWS EKS setup for PCI-DSS, SOC2, and HIPAA compliance
A free training course and lab environment for learning to test and attack cloud infrastructure, including AWS and Azure.
Conmachi is a Golang tool for scanning container environments for security issues.
Cloud Container Attack Tool (CCAT) is a tool for testing security of container environments.
Krampus is a security solution for managing AWS objects and can be used as a cost-control tool.
PINNED
Fabric Platform by BlackStork
Fabric Platform is a cybersecurity reporting solution that automates and standardizes report generation, offering a private-cloud platform, open-source tools, and community-supported templates.
Mandos Brief Newsletter
Stay ahead in cybersecurity. Get the week's top cybersecurity news and insights in 8 minutes or less.
Wiz
Wiz Cloud Security Platform is a cloud-native security platform that enables security, dev, and devops to work together in a self-service model, detecting and preventing cloud security threats in real-time.
Adversa AI
Adversa AI is a cybersecurity company that provides solutions for securing and hardening machine learning, artificial intelligence, and large language models against adversarial attacks, privacy issues, and safety incidents across various industries.