Kubernetes RBAC Auditor
Versionv1.5
Difficulty Advanced
Updated2025-02-20
CategoryCloud & Infrastructure

Kubernetes RBAC Auditor

$129.99

Kubernetes RBAC Auditor

n

Audit of security RBAC for clusters Kubernetes:

n
    n
  • Role analysis — Enumera all the Roles, ClusterRoles, RoleBindings and ClusterRoleBindings. Detecta wildcards and permisos peligrosos.
  • n
  • Service account audit — Identifica SAs with tokens montados automaticmente, SAs with ClusterAdmin, SAs no usesdos.
  • n
  • Pod security — Detecta pods privileged, hostPID, hostNetwork, capabilities peligrosas (SYS_ADMIN, NET_RAW).
  • n
  • Secret exposure — Identifica secrets montados in pods and accesibles by SAs with permisos excesivos.
  • n
  • Escape vectors — Detecta configurestions that allowsn container escape: docker.sock montado, /proc/sys writable.
  • n
  • Report — JSON and HTML with findings categorizados by severidad.
  • n
n

Requirements: kubeconfig with permisos of lectura. kubectl + Python 3.