panther-labs / panther-analysis

Built-in Panther detection rules and policies
https://panther.com/
Apache License 2.0
339 stars 173 forks source link

WIP: add initial EKS exec rule #1287

Open rileydakota opened 4 months ago

rileydakota commented 4 months ago

Background

As discussed with @arielkr256, first of several K8s/EKS specific detections here.

To-do:

Changes

TBD

Testing

TBD