Adversarial Lab

Kubernetes Escape Room

You have shell access in a low-privilege pod. Solve a chain of misconfigurations — secrets leaks, privilege escalation, container escape — to "escape" the cluster. Then identify which defensive control would have stopped each step.

6 scenarios~20 minutesHard
RUNHard

How the simulator works

  • Each scenario shows a step in an attack chain — what the attacker has access to and what they need next.
  • Identify the defensive control that would have blocked that step from four plausible options.
  • Read the production explanation, follow the link to the relevant lesson, and move to the next step.
  • Score yourself across all six escape steps — covering SA tokens, host-mounts, kernel exploits, etcd, RBAC escalation, and CVE-class vulnerabilities.