ori.agmon
1e4ead93f4
Created RunningAsPodEvent
...
Throw it from hosts.py when running form pod
I was able to subscribe to the RunningAsPodEvent thanks to a Rebased with the branch that fix the circular dependencies bug (moveAzureComponentToTypes branch)
2018-10-16 17:12:42 +03:00
ori.agmon
1f01076cf6
Created RunningAsPodEvent
...
Throw it from hosts.py when running form pod
I was able to subscribe to the RunningAsPodEvent thanks to a Rebased with the branch that fix the circular dependencies bug (moveAzureComponentToTypes branch)
2018-10-16 17:12:42 +03:00
ori.agmon
08f38c623f
Had to remove the Azure component form the hunting/aks since it made a circular dependency bug!
2018-10-16 17:12:36 +03:00
ori.agmon
1f9b611237
Fixed all PR comments, just have to change the subscription now..
2018-10-16 17:12:24 +03:00
ori.agmon
eb5a0a6df2
Removed try & except & added logging
2018-10-16 17:12:24 +03:00
ori.agmon
8a8f2272ec
changed subscription
2018-10-16 17:12:24 +03:00
ori.agmon
efd2563e2a
Improved description for this hunter
2018-10-16 17:12:24 +03:00
ori.agmon
d3658f2d3d
removed the traceback after tested successfully
2018-10-16 17:12:24 +03:00
ori.agmon
5de247b0f5
changed the way im checking how many secrets there are at the default secrets path
2018-10-16 17:12:24 +03:00
ori.agmon
c7b1874dbb
changed the way im checking how many secrets there are at the default secrets path
2018-10-16 17:12:24 +03:00
ori.agmon
e66f427f92
access to secrets from within the pod hunter
2018-10-16 17:12:12 +03:00
oriagmon
086a403559
locked variables
2018-10-16 17:03:57 +03:00
oriagmon
8462eba1b1
Intending
2018-10-16 16:53:57 +03:00
oriagmon
229347e9fa
Attempting to solve the threading bug, I will do more checking to be sure its gone
2018-10-16 16:53:07 +03:00
ori.agmon
99dc62ee9d
Added top to the readme for dev so the mistake won't happen again
2018-10-14 16:08:40 +03:00
ori.agmon
f771da5f5e
Added the Azure import to aks.py
2018-10-14 15:25:46 +03:00
ori.agmon
493d7d6d38
Created RunningAsPodEvent
...
Throw it from hosts.py when running form pod
I was able to subscribe to the RunningAsPodEvent thanks to a Rebased with the branch that fix the circular dependencies bug (moveAzureComponentToTypes branch)
2018-10-14 15:24:11 +03:00
ori.agmon
4b466f61c3
Created RunningAsPodEvent
...
Throw it from hosts.py when running form pod
I was able to subscribe to the RunningAsPodEvent thanks to a Rebased with the branch that fix the circular dependencies bug (moveAzureComponentToTypes branch)
2018-10-14 15:10:14 +03:00
ori.agmon
bff5ce7558
Had to remove the Azure component form the hunting/aks since it made a circular dependency bug!
2018-10-14 15:10:14 +03:00
ori.agmon
b5117fb315
Had to remove the Azure component form the hunting/aks since it made a circular dependency bug!
2018-10-14 14:51:15 +03:00
ori.agmon
0c6de23c65
Fixed all PR comments, just have to change the subscription now..
2018-10-14 12:00:13 +03:00
ori.agmon
d401ede636
Removed try & except & added logging
2018-10-14 11:50:11 +03:00
ori.agmon
46cbfbc5dc
Fixed status code bug & some intending.
2018-10-10 20:10:06 +03:00
ori.agmon
e3d45d5d88
improved comment
2018-10-10 19:12:16 +03:00
ori.agmon
7041280f2c
Removed the helpers functions
2018-10-10 19:11:04 +03:00
ori.agmon
29a004239b
changed subscription
2018-10-10 18:04:08 +03:00
ori.agmon
c01de32f04
Improved description for this hunter
2018-10-10 11:29:44 +03:00
ori.agmon
bb01d1bad9
removed the traceback after tested successfully
2018-10-10 11:23:49 +03:00
ori.agmon
5efe381451
changed the way im checking how many secrets there are at the default secrets path
2018-10-09 22:21:24 +03:00
ori.agmon
18cbe6c53e
changed the way im checking how many secrets there are at the default secrets path
2018-10-09 22:15:28 +03:00
ori.agmon
105bc393da
access to secrets from within the pod hunter
2018-10-09 21:51:49 +03:00
ori.agmon
5f5f411aff
Added informative description for the EtcdAccessEnabledWithoutAuthEvent event
2018-10-09 21:27:11 +03:00
Liz Rice
e521c658dc
Merge pull request #50 from aquasecurity/addMoreLogs
...
Add more logs
2018-10-09 08:40:10 +01:00
ori.agmon
28b7910588
Fixed the PR comments :-)
2018-10-08 17:21:29 +03:00
ori.agmon
19c10fd8e9
Fixed the PR comments :-)
2018-10-08 17:18:19 +03:00
ori.agmon
30435f2348
Fixed some english mistakes & :-)
2018-10-08 15:45:23 +03:00
ori.agmon
4573fe4089
Improved unauthorized access false positive on edge case (where user is running using https & 127.0.0.1 & needed certificates)
2018-10-07 17:16:07 +03:00
ori.agmon
b9ce66e372
Added evidence to the no auth event & tested it on a vulnerable remote cluster (and it worked!)
2018-10-07 16:59:49 +03:00
ori.agmon
7e24471e08
Updated the todos list
2018-10-07 11:45:52 +03:00
ori.agmon
3984b5ad32
Added categories to all vulnerabilities
2018-10-07 11:42:21 +03:00
ori.agmon
042e57e39f
Made some Distinctions between passive hunter and discovery (some discoveries were logged as passive hunters )
2018-10-07 10:43:24 +03:00
ori.agmon
e1712a7a74
Some passive hunters were logged as active hunters. I've fixed it
2018-10-03 18:58:10 +03:00
ori.agmon
440ee5cf2b
Fixed a small bug in the active hunter
2018-10-03 18:50:53 +03:00
ori.agmon
29f4d94ca3
Fixed a small bug in the active hunter
2018-10-03 18:48:54 +03:00
ori.agmon
da9a97dfd8
Fixed a small bug in the active hunter & passive hunter
2018-10-03 18:46:48 +03:00
ori.agmon
1e13ab0985
Updated the TODOS list (Only 2 left!)
2018-10-03 18:34:43 +03:00
ori.agmon
0d980fa0ef
Added some evidences to events & deleted unused code
2018-10-03 18:32:31 +03:00
ori.agmon
4f9d1e2c45
I've Split the etcd hunters to hunting & discovery dirs
2018-10-03 18:20:35 +03:00
ori.agmon
d0633ee3c1
Added init method to the etcd active hunter
2018-10-02 19:32:32 +03:00
ori.agmon
7201f5e236
Solved some exception bugs & did some refactoring to code & Added event & splited active & passive hunter
2018-10-02 18:55:50 +03:00