K8S Rbac Abuse

Kubernetes RBAC privilege escalation paths — ClusterRole/Role enumeration via `kubectl auth can-i --list`, abuse of pods/exec, pods/portforward, secrets get, escalate verb, bind verb, impersonate verb, system:masters group abuse, ServiceAccount token theft and reuse.

purpleailab Updated

File contents

purpleailab/decepticon/tree/main/packages/decepticon/decepticon/skills/standard/cloud/container/k8s-rbac-abuse commit e60057a089

Frequently asked questions

npx skillmds@latest add purpleailab/k8s-rbac-abuse