New Skill Forged: Hacking Kubernetes
New Skill Forged
Hacking Kubernetes: Threat-Driven Analysis and Defense by Andrew Martin & Michael Hausenblas. 240 pages.
Threat-driven Kubernetes security guide: pod hardening (securityContext/capabilities/seccomp), RBAC audit and privilege escalation paths, network policies (default deny), supply chain (Trivy/cosign/SBOM), container runtime isolation (gVisor/Kata), secrets management (Vault/External Secrets), OPA/Gatekeeper policy, and Falco intrusion detection.
What this skill teaches Claude to do:
- Build Kubernetes threat models: identify attack surfaces, threat actors, attack trees
- Harden pod security: securityContext, capabilities drop, read-only filesystem, seccomp
- Identify and exploit dangerous RBAC misconfigurations — and fix them
- …and 4 more
Browse the full skill at /skills/hacking-kubernetes
Forged from 4,939 books. Auto-generated by the Skill Forge pipeline.