kube-hunter Logo

kube-hunter

0
Free
Visit Website

kube-hunter hunts for security weaknesses in Kubernetes clusters. The tool was developed to increase awareness and visibility for security issues in Kubernetes environments. You should NOT run kube-hunter on a Kubernetes cluster that you don't own! Run kube-hunter: kube-hunter is available as a container (aquasec/kube-hunter), and we also offer a web site at kube-hunter.aquasec.com where you can register online to receive a token allowing you to see and share the results online. You can also run the Python code yourself as described below. Explore vulnerabilities: The kube-hunter knowledge base includes articles about discoverable vulnerabilities and issues. When kube-hunter reports an issue, it will show its VID (Vulnerability ID) so you can look it up in the KB at https://aquasecurity.github.io/kube-hunter/

FEATURES

ALTERNATIVES

A tool for detecting secrets in your code

A repository of open-source plugins for Rapid7 InsightConnect

A community effort to compile security advisories for Ruby libraries with a detailed directory structure.

TANNER is a remote data analysis and classification service for evaluating HTTP requests and composing responses for SNARE.

Vulnerable Android application for learning security concepts.

A presentation about the OWASP Top 10, a list of the most critical security risks to web applications.

Tool to identify and understand code-injection vulnerabilities in Windows 7 UAC whitelist system.

Amass by OWASP performs comprehensive attack surface mapping and asset discovery.