performing-container-escape-detection
Audits container and pod configuration for escape-enabling misconfiguration using the Kubernetes Python client - privileged flags, dangerous capability grants, host path mounts, shared namespaces, and CVE-2022-0492 style cgroup abuse. Use when sweeping a cluster for workloads that could break out, producing a posture report, or checking configuration before enforcement is switched on. Keywords: privileged, hostPath, hostPID, capabilities, CVE-2022-0492, cgroup, kubernetes python client, posture audit. Do not use for runtime syscall-based detection - use detecting-container-escape-attempts. '
Informações da origem
- Repositório
- mukul975/Anthropic-Cybersecurity-Skills
- Última atividade na origem
- 23 de agosto de 2026 às 15:15
- Idioma detectado do SKILL.md
- inglês
- Estrelas
- 33.552
- Forks
- 4.068
Opções de instalação
Por padrão, está selecionado o prompt que primeiro revisa a origem. Você pode mudar para um comando direto ou baixar uma cópia local.
Revise os arquivos de origem
Leia o SKILL.md e os arquivos complementares exibidos pelo SkillsMP antes de decidir se vai instalar.
Exibindo SKILL.md
- name
- performing-container-escape-detection
- description
- Audits container and pod configuration for escape-enabling misconfiguration using the Kubernetes Python client - privileged flags, dangerous capability grants, host path mounts, shared namespaces, and CVE-2022-0492 style cgroup abuse. Use when sweeping a cluster for workloads that could break out, producing a posture report, or checking configuration before enforcement is switched on. Keywords: privileged, hostPath, hostPID, capabilities, CVE-2022-0492, cgroup, kubernetes python client, posture audit. Do not use for runtime syscall-based detection - use detecting-container-escape-attempts. '
- domain
- cybersecurity
- subdomain
- container-security
- tags
- ["container-security","container-escape","privileged-container","namespace-analysis","linux-capabilities","threat-detection"]
- version
- 1.0
- author
- mahipal
- license
- Apache-2.0
- nist_csf
- ["PR.PS-01","PR.IR-01","ID.AM-08","DE.CM-01"]
- mitre_attack
- ["T1610","T1611","T1609","T1525"]