Skip to main content
OverflowMyBuffers
  • Home
  • Active Directory1
  • Appian5
  • Cloud4
  • Code Reviews1
  • CRTO Notes4
  • Docker1
  • General2
  • Keycloak1
  • Kubernetes1
  • Mendix1
  • Mobile1
  • OSED4
  • OSEP Notes4
  • OSINT1
  • OSMR1
  • OSWA1
  • OSWE Notes6
  • Pentesting AI2
  • Reverse Engineering1
  • SAP9
  • Sap Security1
  • Sliver1
  • Tools1
  • Web5
  • Wifi7
Did you know?

In ADCS ESC1, if a certificate template allows enrollees to specify a Subject Alternative Name (SAN) and grants low-privileged users enrollment rights, an attacker can request a certificate as any domain user, including Domain Admin, by simply setting the SAN field.

← All topics

Kubernetes

1 note

Notes

  • Kubernetes Pentesting GuideComprehensive Kubernetes security testing guide covering cluster enumeration, RBAC abuse, pod escape, service account exploitation, etcd dumping, code review patterns, network policy bypass, and lateral movement in K8s environments.
AboutPrivacy PolicyManage cookie preferences