frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

Open in hackernews

RBAC Atlas: A curated index of rbac policies in K8s

https://rbac-atlas.github.io
2•alevsk•6h ago

Comments

alevsk•6h ago
TL;DR: I’m working on a Kubernetes project that could be useful for security teams and auditors, feedback is welcome!

I've built an RBAC policy analyzer for popular Kubernetes open-source projects (the code will soon be in a shareable state on GitHub), it inspects the API groups, resources, and verbs accessible by service account identities in a cluster. With that I put together an static website using hugo to visualize the findings, track policy changes, and document potential abuse scenarios, etc.

Why is RBAC important? RBAC is the final layer of defense in Kubernetes security. If workloads are compromised and an identity is stolen, a misconfigured or overly permissive RBAC policy (common with Operators) can enable attackers to move laterally within your cluster, potentially leading to a complete Kubernetes cluster takeover.

If this sounds interesting, please check out the site (no Ads or SPAM in there I promise) and let me know what I’m missing, what you like, dislike, or any other constructive feedback you may have.

Eyemaze

https://www.eyezmaze.com/
1•petargyurov•3m ago•0 comments

N.Ireland gov confirms it did not ask Fujitsu to continue bidding for project

https://www.theregister.com/2025/06/16/northern_ireland_government_fujitsu_bid/
2•rntn•5m ago•0 comments

The Fact Checker

https://yalereview.org/article/susan-choi-new-yorker-fact-checking
1•Michelangelo11•8m ago•0 comments

Belgian Court of Appeal upheld the ruling that IAB Europe's TCF violates GDPR

https://www.globallawtoday.com/world/europe/2025/05/the-future-of-digital-advertising-consent-belgian-courts-ruling-on-iab-europes-transparency-consent-framework/
1•dotcoma•9m ago•0 comments

An open source, off-grid, decentralized, mesh net network

https://meshtastic.org/
5•doener•15m ago•1 comments

Britain's MI6 'Q' steps out of shadows to become first female spymaster

https://www.smh.com.au/world/europe/britain-s-mi6-q-steps-out-of-shadows-to-become-first-female-spymaster-20250616-p5m7q1.html
1•keepamovin•19m ago•1 comments

Policymakers who think AI can help rescue flagging UK economy should take heed

https://www.theguardian.com/business/2025/jun/15/policymakers-who-think-ai-can-help-rescue-flagging-uk-economy-should-take-heed
2•chrisjj•19m ago•1 comments

Walmart and Amazon Are Exploring Issuing Their Own Stablecoins

https://www.wsj.com/finance/banking/walmart-amazon-stablecoin-07de2fdd
1•samuel246•22m ago•0 comments

Do Androids Dream of Anything at All?

https://www.newyorker.com/culture/persons-of-interest/do-androids-dream-of-anything-at-all
3•mitchbob•23m ago•1 comments

The Culture Is in the Code Review

https://deven.codes/posts/the-culture-is-in-the-code-review/
1•devenjarvis•25m ago•0 comments

Comparing the privacy of popular API clients

https://kreya.app/blog/comparing-privacy-of-popular-api-clients/
4•CommonGuy•26m ago•0 comments

What Is an Icebreaker and What Makes IT Different from Other Ships?

https://www.slashgear.com/1851680/icebreaker-ship-explained-how-different-from-other-vessels/
2•squircle•26m ago•0 comments

Abnormal Behaviour of Birds in Captivity

https://en.wikipedia.org/wiki/Abnormal_behaviour_of_birds_in_captivity
3•samuel246•30m ago•0 comments

Police seizes Archetyp Market drug marketplace, arrests admin

https://www.bleepingcomputer.com/news/security/police-seizes-archetyp-market-drug-marketplace-arrests-admin/
2•thousand_nights•30m ago•0 comments

The resume tool I built to automate job hunting just got me a $160K tech offer

8•kaly_codes•31m ago•4 comments

Search Huge JSON files on the web without crashing

https://shaneosullivan.wordpress.com/2025/06/16/search-huge-json-files-on-the-web/
1•shaneos•31m ago•0 comments

Show HN: The Polyglot's Atlas – Interactive world map for language learners

https://polyglotsatlas.com
1•lapdem•32m ago•0 comments

Spy school dropout: GCHQ intern jailed for swiping classified data

https://www.theregister.com/2025/06/16/gchq_intern_jailed/
1•beardyw•34m ago•0 comments

Show HN: Socket-call – Call socket.io events like normal JavaScript functions

https://github.com/bperel/socket-call
1•bperel•36m ago•0 comments

Show HN: BatchShots – In-browser batch editor for image and SEO optimization

https://www.batchshots.com/en
5•banandre•37m ago•2 comments

Stochastic Terrorism

https://en.wikipedia.org/wiki/Stochastic_terrorism
6•smig0•39m ago•1 comments

Golang stun/turn library (tcp+udp) MIT License + P2P chat test code

https://github.com/tunnels-is/stunturn
1•keyb1nd•43m ago•0 comments

Art of Chording

https://www.artofchording.com/
2•tosh•43m ago•0 comments

Octobass

https://www.atlasobscura.com/places/octobass
2•keepamovin•43m ago•0 comments

Show HN: I made a free extension that disguises Twitter as Google spreadsheets

https://chromewebstore.google.com/detail/twixio/jppahkahdebmgbpddegcagjmichchphc
1•AaronQLF_•44m ago•0 comments

The Wiki Weekend

https://ratfactor.com/htmlwarden/wiki-weekend
1•MrVandemar•47m ago•0 comments

Apple's Terminal App Gets Colorful Redesign in macOS Tahoe

https://www.macrumors.com/2025/06/16/apples-terminal-app-macos-tahoe/
3•tosh•50m ago•0 comments

How to Determine If a Problem Is Worth Solving: A CEO's Guide

https://medium.com/startuptoboardroom/how-to-determine-if-a-problem-is-worth-solving-a-ceos-guide-dc591c44fb0a
2•squircle•51m ago•0 comments

A.I. Is Poised to Rewrite History. Literally.

https://www.nytimes.com/2025/06/16/magazine/ai-history-historians-scholarship.html
2•jbegley•54m ago•1 comments

Against LLM Maximalism

https://explosion.ai/blog/against-llm-maximalism
1•softwaredoug•55m ago•0 comments