kubernetes-pentesting

Official

Pentest Kubernetes clusters end-to-end.

Authoryaklang
Version1.0.0
Installs0

System Documentation

What problem does it solve?

Kubernetes pentesting playbook helps security teams identify misconfigurations and attack paths in Kubernetes clusters, enabling structured, authorized assessments and risk reduction.

Core Features & Use Cases

  • API server access checks and anonymous access checks
  • RBAC enumeration and dangerous permissions discovery
  • Service account token abuse, etcd data discovery, and Kubelet API exploitation
  • Cloud IMDS access checks for AWS EKS, GKE, and AKS
  • Admission webhook bypass considerations and registry secret exposure

Quick Start

Execute a scoped test against a lab cluster to enumerate RBAC permissions and verify access to etcd and the Kubelet API.

Dependency Matrix

Required Modules

None required

Components

Standard package

💻 Claude Code Installation

Recommended: Let Claude install automatically. Simply copy and paste the text below to Claude Code.

Please help me install this Skill:
Name: kubernetes-pentesting
Download link: https://github.com/yaklang/hack-skills/archive/main.zip#kubernetes-pentesting

Please download this .zip file, extract it, and install it in the .claude/skills/ directory.
View Source Repository

Agent Skills Search Helper

Install a tiny helper to your Agent, search and equip skill from 471,000+ vetted skills library on demand.