Kubernetes attacks
SkillCloud & infraAttack exposed Kubernetes: API server, kubelet, etcd, dashboards, and RBAC. Load on k8s signals, ports 6443/10250/2379/8443, /api/v1, kube-dns, a pod foothold, or "kubernetes/k8s". Signals: kubectl, service-account tokens, exposed dashboard, container in a cluster.
Use Kubernetes attacks in Claude, ChatGPT or Ahel Desktop
Free. Sign in, add Kubernetes attacks and connect your AI. About a minute.
Also: Claude Code · Cursor · Codex
Then ask your AI: use the Kubernetes attacks skill
Details
Instructions available. Your AI can read the instructions. Execution depends on the setup they require.
Account requirements not reviewed. Check the skill instructions before use; Ahel provides instructions and does not run this skill.
No other account needed.
Add Ahel to your AI once: Claude, ChatGPT, Cursor, Claude Code or Codex. Then ask it to use this.
What this skill tells your AI
The instructions your AI receives, as published by noorqureshi/sploitagent in skills/cloud/cloud-kubernetes/SKILL.md and read by Ahel’s review.
When it applies
A Kubernetes control-plane or node component is reachable (externally or from a pod foothold), or you landed in a container inside a cluster and want to escalate to cluster admin / other tenants.
Why it works
k8s exposes powerful HTTP APIs that are frequently unauthenticated or over-permissioned: anonymous API access, kubelet read/exec on 10250, unauth etcd (all secrets), and mounted service-account tokens with broad RBAC. One over-scoped token = cluster takeover.
Method
- From outside:
kube-hunter; probe API server 6443 (/api/v1anonymous), kubelet 10250 (/pods,/runexec), etcd 2379 (keys→secrets), and exposed dashboards (8443/anonymous). - From a pod: read the mounted token
/var/run/secrets/kubernetes.io/serviceaccount/;kubectl auth can-i --listto see what it grants. - Escalate via RBAC: over-permissioned SA → create/exec pods, read secrets across namespaces,
or
create podswith a hostPath/privileged spec to mount the node (→ node/cluster takeover). - Container→node breakout: privileged pod, hostPID/hostNetwork, or a hostPath mount to the
host filesystem (→
cloud-container-escape). - Loot:
kubectl get secrets -A, cloud IAM via node metadata (→cloud-imds-ssrf).
Gotchas
kubectl auth can-i --listfirst — it tells you exactly what the token can do; don't guess.- Anonymous API/kubelet is common in labs and misconfigured clusters — always test unauth.
- On bug bounty, prove access read-only where possible; creating privileged pods is high-impact — mind RoE.
Verify success
Cluster-level access proven: reading secrets across namespaces, exec into others' pods, or node filesystem/cloud-creds access from an over-scoped token.
References
kube-hunter/peirates; NCC "Kubernetes security"; MITRE ATT&CK Containers.
Signals
- GitHub stars
- 20
- Forks
- 7
- Last commit
- Sep 2026
Ahel review
S4info
community integration, published by noorqureshi, not kubernetes
Automated review, not a security audit. Ruleset v1+k2.
Advanced
- Item type
- skill
- Key
cloud-kubernetes- Source
- github.com/noorqureshi/sploitagent
github.com/noorqureshi/sploitagent
More in Cloud & infra
Skill · vercel-labs
More in Cloud & infraweb-design-guidelines
Skill · vercel-labs
More in Cloud & infraturborepo
Skill · vercel
More in Cloud & inframicrosoft-foundry
Skill · microsoft
More in Cloud & infraazure-diagnostics
Skill · microsoft
More in Cloud & infrauncloud
Skill · affaan-m
More in Cloud & infra