kubehound
« Back to VersTracker
Description:
Tool for building Kubernetes attack paths
Type: Formula  |  Latest Version: 1.6.7@0  |  Tracked Since: Dec 25, 2025
Links: Homepage  |  formulae.brew.sh
Category: Security
Tags: kubernetes security devsecops attack-graph pentesting
Install: brew install kubehound
About:
KubeHound is a Kubernetes attack graph tool designed to identify security risks within cluster configurations. It ingests cluster state data to build a comprehensive graph of resources and relationships, enabling complex security queries. This allows security teams to proactively discover and remediate attack paths before they can be exploited.
Key Features:
  • Builds a local graph database of the Kubernetes cluster
  • Identifies complex attack paths and privilege escalation risks
  • Provides a powerful query language for security analysis
  • Integrates into CI/CD pipelines for automated security testing
Use Cases:
  • Auditing production Kubernetes clusters for security vulnerabilities
  • Simulating attack vectors to test defensive controls
  • Automating security regression testing in CI/CD pipelines
Alternatives:
  • kube-bench – Kube-bench checks for CIS Kubernetes benchmark compliance, whereas KubeHound models dynamic attack paths.
  • Prowler – Prowler is a broad cloud security tool, while KubeHound is specialized for Kubernetes attack path analysis.
Version History
Detected Version Rev Change Commit
Dec 25, 2025 8:22pm 1.6.7 0 VERSION_BUMP cc7be5df
Oct 10, 2025 1:14am 0 VERSION_BUMP 6303eb08
Sep 24, 2025 5:31pm 0 VERSION_BUMP a15415bc
Sep 11, 2025 5:57pm 0 VERSION_BUMP 9e3451fb
Dec 4, 2024 4:13am 0 VERSION_BUMP da33fd9d
Dec 3, 2024 10:12pm 0 VERSION_BUMP b723ecd1
Nov 16, 2024 1:05am 0 VERSION_BUMP 7e9bbc1b
Nov 15, 2024 5:27pm 0 VERSION_BUMP 8828398e
Sep 13, 2024 4:12pm 0 VERSION_BUMP ceef2233