Dynatrace's insecure cloud-native microservices app, a Twitter clone of about a dozen services in Java, .NET, Go, PHP, Python and Node.js on Kubernetes, with SSRF, command and SQL injection, JWT key confusion, insecure deserialization and over-privileged service accounts.
Not startedVMcommit 1cc2957x86_64Secret
Exploit Unguard's services and reach the Kubernetes cluster behind them.
The brief for this lab lives in its repository.