Skip to main content
在 Manus 中运行任何 Skill
一键导入

kubelet-exploit

星标3
分支0
更新时间2026年3月19日 19:28

Exploit an unauthenticated Kubernetes kubelet API (port 10250) to retrieve the cluster CA private key, even on hardened clusters with distroless containers. Use when performing authorized security testing against a Kubernetes cluster that has an exposed kubelet with anonymous auth enabled and AlwaysAllow authorization. Triggers on tasks involving kubelet exploitation, Kubernetes penetration testing, read-write kubelet attacks, distroless container exploitation, or extracting secrets from Kubernetes clusters via the kubelet API. Requires network access to the kubelet port (10250). No local `etcdctl` needed — the script runs etcdctl inside the etcd container.

安装

用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。

文件资源管理器
5 个文件
SKILL.md
readonly