kubernetes-pentesting
OfficialPentest Kubernetes clusters end-to-end.
Authoryaklang
Version1.0.0
Installs0
System Documentation
What problem does it solve?
Kubernetes pentesting playbook helps security teams identify misconfigurations and attack paths in Kubernetes clusters, enabling structured, authorized assessments and risk reduction.
Core Features & Use Cases
- API server access checks and anonymous access checks
- RBAC enumeration and dangerous permissions discovery
- Service account token abuse, etcd data discovery, and Kubelet API exploitation
- Cloud IMDS access checks for AWS EKS, GKE, and AKS
- Admission webhook bypass considerations and registry secret exposure
Quick Start
Execute a scoped test against a lab cluster to enumerate RBAC permissions and verify access to etcd and the Kubelet API.
Dependency Matrix
Required Modules
None requiredComponents
Standard package💻 Claude Code Installation
Recommended: Let Claude install automatically. Simply copy and paste the text below to Claude Code.
Please help me install this Skill: Name: kubernetes-pentesting Download link: https://github.com/yaklang/hack-skills/archive/main.zip#kubernetes-pentesting Please download this .zip file, extract it, and install it in the .claude/skills/ directory.
Agent Skills Search Helper
Install a tiny helper to your Agent, search and equip skill from 471,000+ vetted skills library on demand.