kube-goat
kube-goat copied to clipboard
As a user I can use the default service account token to authenticate to the API
Motivation
Directory traversal / RCE / SSRF can lead to exposure of the default service account token. This challenge of web app vulns + SA token submission.