33(+) Kubernetes security tools

33(+) Kubernetes security tools

  • August 3, 2019
Table of Contents

33(+) Kubernetes security tools

Kubernetes image scanning Kubernetes runtime security Kubernetes network security Image distribution and secrets management Kubernetes security audit End-to-end commercial security tools Join our live session to learn more! Kubernetes security tools … there are so freaking many of them; with different purposes, scopes and licenses. That’s why we decided to create this Kubernetes security tools list, including open source projects and commercial platforms from different vendors, to help you choose the ones that look more interesting to you and guide you in the right direction depending on your Kubernetes security needs.

To further help you navigate this directory, we have also divided the different tools by their main functionality and scope: Kubernetes image scanning and static analysis Anchore Clair Dagda KubeXRay Snyk Trivy Kubernetes runtime security Falco Linux runtime security frameworks Sysdig open source Kubernetes network security Aporeto Calico Cilium Istio Tigera Trireme Image distribution and secrets management Grafeas In-toto Portieris Vault Kubernetes security audit Kube-bench Kube-hunter Kubeaudit Kubesec Open Policy Agent End-to-end Kubernetes security commercial products Aqua Security Capsule8

Cavirin Google SCC Layered Insight (Qualys) Neuvector StackRox Sysdig Secure Tenable Container Security Twistlock (Palo Alto)

Source: sysdig.com

Share :
comments powered by Disqus

Related Posts

Kubernetes’ first major security hole discovered

Kubernetes’ first major security hole discovered

Kubernetes has become the most popular cloud container orchestration system by far, so it was only a matter of time until its first major security hole was discovered. And the bug, CVE-2018-1002105, aka the Kubernetes privilege escalation flaw, is a doozy. It’s a CVSS 9.8 critical security hole.

Read More
Moving from Kube2Iam to Kiam

Moving from Kube2Iam to Kiam

At Ibotta, we chose kube2iam to assign AWS IAM Roles to containers running in our Kubernetes cluster. Lately, we’ve run into some issues with it—specifically when running a job that scores all of our service repos. This spins up a number of pods in parallel and has often failed to correctly access roles.

Read More
CVE-2018-18264 Privilege escalation through Kubernetes dashboard

CVE-2018-18264 Privilege escalation through Kubernetes dashboard

A recently disclosed vulnerability in Kubernetes dashboard (CVE-2018-18264) exposes secrets to unauthenticated users. In this blog post we’ll explore some key takeaways regarding monitoring privilege escalation on Kubernetes. The Kubernetes dashboard is a web based user interface that allows users to manage applications and resources within the cluster.

Read More