Tags: babywyrm/kube-hunter
Tags
Feature: Custom Hunting (aquasecurity#489) * added partial and partial-names flag. mechanism for whitelisting hunter subscrption for custom hunts * changed name from partial to custom * ran black to format * flake8 formatting * added documentation in readme for Custom hunting and made Advanced Usage a higher level topic * added Collector, StartedInfo and SendFullReport to the core_hunters * changed old name class-names to raw-hunter-names * fixed bug in import loop
Switched CVE Hunting to optional & Minor core feature (aquasecurity#482) * Removed automatic registration of the k8s CVE hunter * Made CVE hunting optional, default set to not run
Fix all of github action workflows (aquasecurity#481) * fixed all of workflows
Make gateway discovery always run when running as pod aquasecurity#471
changed exception logs to debug logs in kubernetes_client nodes disco… …very (aquasecurity#470)
K8s autodiscovery (aquasecurity#453) * Add a new dependency on Kubernetes package * Add and store a new flag about automatic nodes discovery from a pod * Implement the listing of nodes * Add tests to cover the k8s node listing * Fix the k8s listing test to ensure the load incluster function is actually called * Add more help to the k8s node discovery flags, and cross-reference them. * Add a note on the Kubernetes auto-discovery in the main README file * Move the kubernetes discovery from conf to modules/discovery * When running with --pods, run the Kubernetes auto discovery * Also mention that the auto discovery is always on when using --pod Co-authored-by: Mikolaj Pawlikowski <mpawlikowsk1@bloomberg.net>
Bugfix - Aws metadata api discovery (aquasecurity#455) * fixed aws metadata bug * added new black reformatting
Bug Fix: False Negative On AKS Hunting (aquasecurity#420) * removed false negative in AzureSpnHunter when /run is disabled * changed to use direct imported class * fixed multiple bugs in azure spn hunting, and improved efficency * fixed bug in cloud identification. TODO: remove the outsourcing for cloud provider * removed unused config variable * fixed tests to use already parsed pods as the given previous event has changed
PreviousNext