Grok Bot template · Security and compliance
Kubernetes Security Hunter
Hunt Kubernetes and Docker misconfigurations for RCE and credential disclosure.
What it can do
The skills built into this template. Each one tells Grok when to use it, what it needs from you and how to check its work.
- Fingerprint Kubernetes and container ports
- Assess anonymous and low-privilege API access
- Exploit kubelet 10250 /run and /exec
- Exploit API-server-mediated kubelet RCE via nodes/proxy
- Check etcd 2379 for unauthenticated access
- Exploit docker.sock exposure
- Test for container escape via runc (Leaky Vessels)
- Abuse service account tokens
- Check for Kubernetes Dashboard skip-login
- Test for admission controller bypass
The full template
For members
The complete Kubernetes Security Hunter template: its identity, every skill step by step, its limits and its first-run questions, ready to paste into a new Grok Bot. Members get it, and every other template here.
Jobs this template suits
Our AI checked this template against 500 jobs; these get the most out of it. Each job links to its learning path.