🐳 Container & DevOps Security Lab

PRACIVO LAB — INTENTIONALLY VULNERABLE
⚠️ Pracivo Security Lab — Docker escape, Kubernetes misconfig, CI/CD secret exposure, supply chain attacks.

Container & DevOps Attack Surface

AttackTargetImpact
Exposed Docker Socketdocker.sock mounted in containerFull host escape — root on host
Privileged Container--privileged flagMount host filesystem — root on host
K8s RBAC MisconfigOverpermissive ServiceAccountCluster admin takeover
CI/CD Secret ExposureGitHub Actions / JenkinsCloud keys, deploy tokens, DB passwords
Supply Chain AttackDependencies / base imagesBackdoor deployed to all users