kholcomb's starred repositories

books

List of books for Software Engineer

Language:HTMLStargazers:199Issues:0Issues:0

Terramaid

A utility for generating Mermaid diagrams from Terraform configurations

Language:GoLicense:Apache-2.0Stargazers:260Issues:0Issues:0

kube-bench

Checks whether Kubernetes is deployed according to security best practices as defined in the CIS Kubernetes Benchmark

Language:GoLicense:Apache-2.0Stargazers:6994Issues:0Issues:0

kdigger

Kubernetes focused container assessment and context discovery tool for penetration testing

Language:GoLicense:Apache-2.0Stargazers:429Issues:0Issues:0

peirates

Peirates - Kubernetes Penetration Testing tool

Language:GoLicense:GPL-2.0Stargazers:1227Issues:0Issues:0

OpenLens

OpenLens Binary Build Repository

Language:JavaScriptStargazers:4004Issues:0Issues:0

ssc-reading-list

A reading list for software supply-chain security.

Stargazers:361Issues:0Issues:0

kubernetes-goat

Kubernetes Goat is a "Vulnerable by Design" cluster environment to learn and practice Kubernetes security using an interactive hands-on playground 🚀

Language:HTMLLicense:MITStargazers:4263Issues:0Issues:0

cicd-goat

A deliberately vulnerable CI/CD environment. Learn CI/CD security through multiple challenges.

Language:PythonLicense:Apache-2.0Stargazers:1926Issues:0Issues:0

simulator

Kubernetes Security Training Platform - focusing on security mitigation

Language:PythonLicense:Apache-2.0Stargazers:930Issues:0Issues:0

hadolint

Dockerfile linter, validate inline bash, written in Haskell

Language:HaskellLicense:GPL-3.0Stargazers:10354Issues:0Issues:0

ctop

Top-like interface for container metrics

Language:GoLicense:MITStargazers:15502Issues:0Issues:0

from-scratch

A hands-on walkthrough for creating an extremely insecure Kubernetes cluster and then hardening it, step by step.

Stargazers:199Issues:0Issues:0

kube-hunter

Hunt for security weaknesses in Kubernetes clusters

Language:PythonLicense:Apache-2.0Stargazers:4734Issues:0Issues:0

kubectl-who-can

Show who has RBAC permissions to perform actions on different resources in Kubernetes

Language:GoLicense:Apache-2.0Stargazers:836Issues:0Issues:0

rback

RBAC in Kubernetes visualizer

Language:GoLicense:Apache-2.0Stargazers:398Issues:0Issues:0

trivy

Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

Language:GoLicense:Apache-2.0Stargazers:23185Issues:0Issues:0

ckad-kind

kind CKAD lab environment

Language:ShellLicense:Apache-2.0Stargazers:5Issues:0Issues:0

grype

A vulnerability scanner for container images and filesystems

Language:GoLicense:Apache-2.0Stargazers:8626Issues:0Issues:0

aws-eks-best-practices

A best practices guide for day 2 operations, including operational excellence, security, reliability, performance efficiency, and cost optimization.

Language:PythonLicense:NOASSERTIONStargazers:2019Issues:0Issues:0

build-containers-the-hard-way

GitBook on the low-level details of building Docker containers.

Stargazers:86Issues:0Issues:0

botb

A container analysis and exploitation tool for pentesters and engineers.

Language:GoLicense:GPL-3.0Stargazers:623Issues:0Issues:0

amicontained

Container introspection tool. Find out what container runtime is being used as well as features available.

Language:GoLicense:MITStargazers:992Issues:0Issues:0

Docker-OSX

Run macOS VM in a Docker! Run near native OSX-KVM in Docker! X11 Forwarding! CI/CD for OS X Security Research! Docker mac Containers.

Language:ShellLicense:GPL-3.0Stargazers:46721Issues:0Issues:0

docker-drawio

Dockerized draw.io based on whichever is the most secure image at the time.

Language:ShellLicense:GPL-3.0Stargazers:1530Issues:0Issues:0

conflictmodeling

A place to gather and organize information about using threat modeling frameworks to deal with social conflict in online systems

License:UnlicenseStargazers:56Issues:0Issues:0

docker-ripper

The best way to automatically rip optical disks using docker!

Language:ShellLicense:MITStargazers:243Issues:0Issues:0

red-kube

Red Team K8S Adversary Emulation Based on kubectl

Language:PythonLicense:Apache-2.0Stargazers:818Issues:0Issues:0
Language:PythonLicense:Apache-2.0Stargazers:108Issues:0Issues:0

Red-Team-Infrastructure-Wiki

Wiki to collect Red Team infrastructure hardening resources

License:BSD-3-ClauseStargazers:4126Issues:0Issues:0