performing-kubernetes-penetration-testing

mukul975/performing-kubernetes-penetration-testing · Agent Skill (multi-file)

by mukul975 · bundle

Published · Last updated


Systematically evaluates Kubernetes cluster security by simulating attacker techniques against the API server, kubelet, etcd, pods, RBAC, network policies, and secrets using tools like kube-hunter, Kubescape, and kube-bench.

SKILL.md

Files

This skill is a package of 8 files. Install with the command above, or download the folder.

Related

  1. auditing-kubernetes-rbac-privilege-escalation · mukul975 bundle
    Find over-permissive RBAC roles and service-account token abuse paths in Kubernetes using kubectl auth can-i, rbac-police, kubectl-who-can, and rakkess during authorized cluster security reviews.
    24.6k
    repo stars
  2. gke-security · google bundle
    Hardens Google Kubernetes Engine (GKE) clusters with Workload Identity, Secret Manager, RBAC, Binary Authorization, Network Policies, and Pod Security Standards.
    14.4k
    repo stars
  3. performing-kubernetes-etcd-security-assessment · mukul975 bundle
    Assess the security posture of Kubernetes etcd clusters by evaluating encryption at rest, TLS configuration, access controls, backup encryption, and network isolation.
    24.6k
    repo stars
  4. implementing-kubernetes-pod-security-standards · mukul975 bundle
    Enforce Pod Security Standards (Privileged, Baseline, Restricted) in Kubernetes 1.25+ using the Pod Security Admission controller with namespace labels and compliant pod specs.
    24.6k
    repo stars
  5. competition-agent-cloud · zhaoxuya520 bundle
    Specialized CTF sandbox skill for analyzing prompt-to-tool chains, deployment drift, and supply-chain provenance in cloud, container, and CI/CD environments.
    12.8k
    repo stars
  6. escaping-containers-to-host · mukul975 bundle
    Exploit privileged pods, host mounts, runC CVEs, and exposed Docker sockets to break out of a container and reach the underlying host during authorized container-security assessments.
    24.6k
    repo stars

Frequently asked questions

How do I install the performing-kubernetes-penetration-testing skill?

Run npx skillmds add mukul975/performing-kubernetes-penetration-testing in your terminal (requires Node.js), paste this page's agent-chat prompt into Claude, Cursor, or any MCP-connected agent, or download the SKILL.md file and copy it into your agent's skills directory.

What does the performing-kubernetes-penetration-testing skill do?

Systematically evaluates Kubernetes cluster security by simulating attacker techniques against the API server, kubelet, etcd, pods, RBAC, network policies, and secrets using tools like kube-hunter, Kubescape, and kube-bench. It is listed under Security, DevOps & Infra, Containers & Kubernetes, Penetration Testing on SkillMD.

Is performing-kubernetes-penetration-testing safe to use?

SkillMD's automated safety review verdict for this skill is CAUTION. Independent scanners report: SkillSpector: WARNING, Skill Scanner: WARNING. Capability flags: executes scripts, makes network calls, reads secrets. SkillMD never runs a skill's scripts for you; review the SKILL.md before installing.

Which AI agents work with performing-kubernetes-penetration-testing?

This skill is tagged as working with Claude Code, Claude.ai, OpenAI Codex. SKILL.md is an open format, so most agents that read a skills directory can load it too.

Is performing-kubernetes-penetration-testing free to use?

Yes. Installing skills from SkillMD is free. This skill is licensed under Apache-2.

Who published performing-kubernetes-penetration-testing?

mukul975 (@mukul975) published this skill. Their other Agent Skills are listed on their SkillMD profile.