kube-hunter Logo

kube-hunter

0
Free
Visit Website

kube-hunter hunts for security weaknesses in Kubernetes clusters. The tool was developed to increase awareness and visibility for security issues in Kubernetes environments. You should NOT run kube-hunter on a Kubernetes cluster that you don't own! Run kube-hunter: kube-hunter is available as a container (aquasec/kube-hunter), and we also offer a web site at kube-hunter.aquasec.com where you can register online to receive a token allowing you to see and share the results online. You can also run the Python code yourself as described below. Explore vulnerabilities: The kube-hunter knowledge base includes articles about discoverable vulnerabilities and issues. When kube-hunter reports an issue, it will show its VID (Vulnerability ID) so you can look it up in the KB at https://aquasecurity.github.io/kube-hunter/

FEATURES

ALTERNATIVES

A fully customizable, offensive security reporting solution for pentesters, red teamers, and other security professionals.

A collection of Ansible roles for hardening various systems and services

A tool to find and search for registered CVEs, creating a local CVE database for offline use.

A hybrid mobile app for Android that intentionally contains vulnerabilities for testing and education

A tool that showcases the attack surface of a given Android device, highlighting potential vulnerabilities and security risks.

A tool for static analysis of known vulnerabilities, trojans, viruses, malware & other malicious threats in docker images/containers

SSLyze is a fast and powerful SSL/TLS scanning tool and Python library with a focus on speed, reliability, and ease of integration.

A tool for scanning Adobe Experience Manager instances for potential security vulnerabilities

PINNED