Kubernetes Security Scanner (K8ssecurity)


Krishna Priya 



From: https://github.com/krishpyishere/k8ssecurity

Agent that checks security aspects of the cluster and rate severities.

A comprehensive security scanning tool for Kubernetes clusters that identifies security issues, misconfigurations, and potential vulnerabilities, aligned with the CKS (Certified Kubernetes Security Specialist) curriculum.

Features – The scanner performs security checks across five major domains:

  1. Cluster Setup and Hardening – CIS Benchmark, Admission Controller, RBAC, Network Policy
  2. System Hardening – Node Security, Runtime Security, gVisor
  3. Minimize Microservice Vulnerabilities – Container Security, Pod Security, Secrets Management
  4. Supply Chain Security – Image Security, SBOM
  5. Runtime Security – Audit, Falco

Integrates with kube-bench, Trivy, Syft, Grype, and optionally Falco. Supports optional SBOM checks and configurable checkers via config file or environment variables.

List of Sessions


Tool Demo Aug 2025

Kubernetes Security Scanner

Blackhat