{"repo":"cyberark/kubeletctl","free":true,"listed":false,"github":"https://github.com/cyberark/kubeletctl","clone":"git clone https://github.com/cyberark/kubeletctl.git","description":"A client for kubelet","language":"Go","stars":903,"topics":["kubeletctl","kubernetes","client","containers","devops","devops-tools","golang","kubelet","kubelet-cri"],"license":"Apache-2.0","category":"deployment-docker-iac","readme_excerpt":"[![GitHub release][release-img]][release] [![License][license-img]][license] [![Go version][shield-go-version]][go-version] ![Downloads][download] Overview Kubeletctl is a command line tool that implement kubelet's API. Part of kubelet's API is documented but most of it is not. This tool covers all the documented and undocumented APIs. The full list of all kubelet's API can be view through the tool or this API table. A related blog post: https://www.cyberark.com/resources/threat-research-blog/using-kubelet-client-to-attack-the-kubernetes-cluster What can it do ? - Run any kubelet API call - Scan for nodes with opened kubelet API - Scan for containers with RCE - Run a command on all the available containers by kubelet at the same time - Get service account tokens from all available containers by kubelet - Nice printing :) Installation On the releases page you will find the latest releases with links based on the operating system. For the following examples, we will use the kubeletctl linux amd64 binary link. If you plan to use other link, change it accordingly. wget curl Usage kubeletctl works similar to kubectl, use the following syntax to run commands: To view the details on each command or subcommand use the -h \\\\ --help switch. Demo Build Prerequisite: - go - gox To build the project run: This will create build/kubeletctl {{.OS}} {{.Arch}} binaries. For Windows users it is possible to use gox directly: Build with Dockerfile locally You can use the attached release Dockerfi","default_branch":null,"files":null,"tree":[],"storefront":"/r/cyberark","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/cyberark/kubeletctl/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}