Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
k8s-cve-2020-8554-mitigations — Prisma Cloud Compute Admission rules to mitigate Kubernetes CVE-2020-8554 | Kitploit
Tools/GitHubGitHub/twistlock/k8s-cve-2020-8554-mitigations
Container SecurityVulnerability AnalysisIDS/IPS EvasionNetwork SecurityCloud SecurityMisconfiguration
GitHubtwistlock/k8s-cve-2020-8554-mitigations

k8s-cve-2020-8554-mitigations

Prisma Cloud Compute Admission rules to mitigate Kubernetes CVE-2020-8554

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share
View Repository
115 years agoNot yet reviewed

Prisma Cloud Compute Mitigations for Kubernetes CVE-2020-8554

This repository contains Prisma Cloud Compute Admission rules that mitigate exploitation of CVE-2020-8554, an unpatched Kubernetes vulnerability. To ensure correct usage, please follow the instructions provided in the 'Prisma Cloud Mitigation' section of our response post, Protecting Against Kubernetes CVE-2020-8554.

Kubernetes CVE-2020-8554

Kubernetes CVE-2020-8554 is a design flaw allowing services to intercept cluster traffic to certain IPs, by setting their .spec.exteralIPs or .status.loadBalancer.ingress[].ip fields to those IPs. Non-admin users that can create or update services, or patch services' status, can exploit the vulnerability to perform Man-in-The-Middle attacks against pods and nodes in the cluster in an attempt to escalate their privileges.

Further Reading

For more information, refer to Protecting Against Kubernetes CVE-2020-8554.

Download Tool