mirror of
https://github.com/HackTricks-wiki/hacktricks-cloud.git
synced 2026-07-28 22:51:09 -07:00
translate half
This commit is contained in:
@@ -82,3 +82,4 @@ kubernetes-pivoting-to-clouds.md
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
+1
@@ -700,3 +700,4 @@ https://github.com/aquasecurity/kube-bench
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
+1
@@ -614,3 +614,4 @@ kubectl delete serviceaccount test-sa
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
+1
@@ -51,3 +51,4 @@ spec:
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
@@ -397,3 +397,4 @@ Off-Menu +
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
@@ -217,3 +217,4 @@ kubectl get ingresses --all-namespaces -o=yaml
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
@@ -571,3 +571,4 @@ https://www.youtube.com/watch?v=X48VuDVv0do
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
@@ -614,3 +614,4 @@ https://www.cyberark.com/resources/threat-research-blog/kubernetes-pentest-metho
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
@@ -120,3 +120,4 @@ https://github.com/external-secrets/external-secrets
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
@@ -176,3 +176,4 @@ You should update your Kubernetes environment as frequently as necessary to have
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
+1
@@ -64,3 +64,4 @@ Note that the attributes set in **both SecurityContext and PodSecurityContext**,
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
@@ -58,3 +58,4 @@ When a pod is created in the `default` namespace without the label `app: myapp`,
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
+1
@@ -62,3 +62,4 @@ Another way to bypass policies is to focus on the ValidatingWebhookConfiguration
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
@@ -35,3 +35,4 @@ attacking-kubernetes-from-inside-a-pod.md
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
@@ -292,3 +292,4 @@ It will install agents in the selected pods and gather their traffic information
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
@@ -78,3 +78,4 @@ When Gatekeeper is deployed in the Kubernetes cluster, it will enforce this poli
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
+1
@@ -65,3 +65,4 @@ Another way to bypass constraints is to focus on the ValidatingWebhookConfigurat
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
@@ -325,3 +325,4 @@ fi
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
@@ -167,3 +167,4 @@ abusing-roles-clusterroles-in-kubernetes/
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
@@ -104,3 +104,4 @@ abusing-roles-clusterroles-in-kubernetes/
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
@@ -216,3 +216,4 @@ https://labs.f-secure.com/blog/attacking-kubernetes-through-kubelet
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
+1
@@ -111,3 +111,4 @@ Forbidden (user=system:node:ip-172-31-28-172.ec2.internal, verb=get, resource=no
|
||||
|
||||
|
||||
|
||||
|
||||
|
||||
Reference in New Issue
Block a user