Kubernetes Goat — vulnerable K8s cluster
Kubernetes Goat is a deliberately vulnerable cluster built for security training. It gives you a sandboxed environment where you can practice attacking and defending Kubernetes setups without needing to build your own broken infrastructure from scratch. The project includes scenarios covering common misconfigurations, RBAC failures, and container escape paths. For security teams, this means you can run tabletop exercises and onboard engineers on K8s attack surface without burning your own lab budget or risk. In practice, it saves you the tedious work of creating realistic but exploitable clusters, and it gives you a shared language for discussing why certain defaults are dangerous.