{"repo":"BishopFox/badPods","free":true,"listed":false,"github":"https://github.com/BishopFox/badPods","clone":"git clone https://github.com/BishopFox/badPods.git","description":"A collection of manifests that will create pods with elevated privileges.","language":"Shell","stars":709,"topics":["kubernetes","penetration-testing","pods","exploitation","podspec","security","assessment","hostpid","hostnetwork","hostpath"],"license":"MIT","category":"security-tools","readme_excerpt":"Bad Pods A collection of manifests that create pods with different elevated privileges. Quickly demonstrate the impact of allowing security sensitive pod attributes like hostNetwork , hostPID , hostPath , hostIPC , and privileged . For additional background, see our blog post: Bad Pods: Kubernetes Pod Privilege Escalation. Contents The Bad pods line-up Prerequisites Organization Usage High level approach Usage examples Create all eight Bad Pods from cloned local repo Create all eight Bad Pods from github Create all eight reverse shell Bad Pods Create all eight resource types using the everything-allowed pod Create a cronjob with the hostNetwork pod Create a deployment with the priv-and-hostpid pod Create a reverse shell using the privileged pod Acknowledgements References and further reading The Bad Pods line-up Each link below provides detailed usage information and post exploitation recommendations. Bad Pod #1: Everything allowed Bad Pod #2: Privileged and hostPid Bad Pod #3: Privileged only Bad Pod #4: hostPath only Bad Pod #5: hostPid only Bad Pod #6: hostNetwork only Bad Pod #7: hostIPC only Bad Pod #8: Nothing allowed For more general information about prerequisites, repository organization, and common usage patterns, see the sections below. Prerequisites 1. Access to a cluster 1. RBAC permission to create one of the following resource types in at least one namespace: CronJob, DeamonSet, Deployment, Job, Pod, ReplicaSet, ReplicationController, StatefulSet 1. RBAC permis","default_branch":null,"files":null,"tree":[],"storefront":"/r/BishopFox","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/BishopFox/badPods/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}