detecting-privilege-escalation-in-kubernetes-pods
mukul975/Anthropic-Cybersecurity-Skills
Detects and prevents privilege escalation for Kubernetes pods by combining admission policies (Pod Security Admission, OPA Gatekeeper) and runtime monitoring (Falco) to watch security contexts, capabilities, syscalls, and audit logs for privileged containers, host namespace access, or dangerous capabilities.