cloud-k8s
Installation
SKILL.md
Cloud / Container / Kubernetes Security
ACTION REQUIRED(读完后立刻执行)
NOW: 读取../field-journal/precedent-pentest.md— 云/K8s 测试必须书面授权NOW: case-init + scope;明确账号边界、禁止破坏性操作NOW: 确认是云元数据/容器/K8s/IAM,而非普通 Web 扫(后者pentest-tools/)NEXT: tool-index;kubectl/aws/gcloud 等多为手动安装ACT: 从「身份与暴露面」开始,禁止默认全网扫描
适用场景
- 云元数据 SSRF(169.254.169.254 / IMDS)
- IAM 过度权限、公开存储桶、错误安全组
- Docker/containerd 逃逸路径评估
- Kubernetes RBAC、Secrets、Admission、供应链镜像
- 容器镜像漏洞(可联动
supply-chain-security/)