Vesta v1.0.3
Notable Updates:
- Add java, php, rust libraries analysis
- Add istio checking
- Add Docker history analysis
- Revise the rules of RBAC checking
Divide the RBAC vulnerabilities into four categories,high
,medium
,low
andwarning
. Key resources such aspods
,deployments
andstatefulsets
with dangerous verbs such ascreate
,patch
anddelete
need to be noticed. Service account mount path/var/run/secrets/kubernetes.io/serviceaccount/token
is checked with RBAC vulnerabilities. Untrusted users are printed for self-checking.
md5 | filename |
---|---|
ef292417ac9024281f92f639e81dbe58 | vesta_darwin_amd64 |
62043d3914f567a5987be688afa21e96 | vesta_linux_amd64 |
f1b34889fae13db512a84f9fc48ba20b | vesta_windows_amd64.exe |