Cdk Escape

使用 CDK 进行容器环境渗透和逃逸。当已进入容器环境(Docker/K8s Pod)需要评估逃逸可能性、利用容器漏洞、或进行容器内信息收集时使用。CDK 集成了容器环境评估、多种逃逸技术(privileged/mount/cgroup/lxcfs/runc/内核漏洞)、容器内横向移动。拿到容器 shell 后第一步就应该运行 CDK 评估。涉及容器逃逸、Docker 渗透、K8s 安全、容器提权的场景使用此技能

wgpsec 6e5fa52 3.1 KB Updated

File contents

wgpsec/aboutsecurity/tree/main/skills/tool/cdk-escape commit 6e5fa525a7

Frequently asked questions

npx skillmds@latest add wgpsec/cdk-escape