Skip to main content

kubernetes-and-container-security

Kubernetes-specific attack techniques -- anonymous API server access, RBAC misconfiguration, pod escape via privileged/hostPath/hostNetwork/mounted Docker socket, kubelet API abuse, etcd exposure, service-account token theft, ingress/admission-controller misconfiguration, container-runtime escape CVEs, and exposed registries. Converted from master-pentest-prompt.md Phase 39 (new -- not in the original 59-phase set, added from research into currently-uncovered high-value bounty classes). Use once a target is confirmed Kubernetes-based (API server, kubelet, or etcd port reachable), as deeper coverage beyond the general Docker-port checklist.

Jump to install

Source facts

Repository
ankitsingh015/HuntMCP
Last source activity
August 24, 2026 at 14:10
Detected SKILL.md language
English
Stars
4
Forks
0

Install options

The review-first prompt is selected by default. You can switch to a direct command or download a local copy.

Review the source files

Read SKILL.md and any companion files shown by SkillsMP before deciding whether to install.