DevOps DevSecOps & SRE
5.8K subscribers
43 photos
88 files
1.44K links
No spamming. If you need to share an update, DM at @iamrawtion

Jobs : t.me/securedevopsjob

Connect with me at : https://www.linkedin.com/in/roshannagekar
Download Telegram
Kubernetes operators can require high level access to the cluster. Badrobot therefore looks like a handy tool. It statically analyses manifests for high risk configurations such as lack of security restrictions on the deployed controller and the permissions of an associated clusterole.

https://github.com/controlplaneio/badrobot
Kiota is a command line tool for generating an API client to call any OpenAPI described API you are interested in. The goal is to eliminate the need to take a dependency on a different API SDK for every API that you need to call

https://microsoft.github.io/kiota
https://github.com/microsoft/kiota
👍1
Metlo is an open source API security platform. Endpoint discovery, detecting common HTTP issues (HSTS headers, PII in urls, etc.) and set up to run in CI if needed.

https://github.com/metlo-labs/metlo
👍1
Paralus is an all-in-one Kubernetes access manager. User-level credentials, RBAC, SSO, audit logs. It enables controlled, audited access to Kubernetes infrastructure for your users, user groups, and services.

https://github.com/paralus/paralus
👍4
Murre is an on-demand, scaleable source of container resource metrics for Kubernetes. It fetches CPU & memory resource metrics directly from the kubelet and enriches the resources with the relevant Kubernetes requests and limits from each PodSpec.

https://github.com/groundcover-com/murre