Skip to content
View r0binak's full-sized avatar
🗳️
kubectl auth can-i --list
🗳️
kubectl auth can-i --list

Block or report r0binak

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Content in all repositories owned by your account will be closed.
Maximum 250 characters. Please don’t include any personal information such as legal names or email addresses. Markdown is supported. This note will only be visible to you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
r0binak/README.md
Sergey r0binak Kanibor — kubernetes security, cloud security, container security Typing SVG

> root@enterprise:~# whoami

I’m Sergey “r0binak” Kanibor — a cybersecurity engineer and tech lead focused on kubernetes security, cloud security, and container security.

Most of my work is about helping companies understand how their clusters and cloud can actually be hacked — and then making sure it is me who does it first.

My background sits at the intersection of cloud-native engineering and offensive security: Kubernetes, containers, service meshes, CI/CD pipelines, AWS / GCP / Azure infrastructure, admission control, supply-chain security, developer tooling, SSDLC, threat modeling, and large-scale vulnerability assessments.

┌─[r0binak@Kanibor.expert]─[~/ops]
└──╼ ./profile --brief

[+] role       : r&d / container security / tech lead
[+] focus      : k8s, cloud, containers, pentest
[+] mindset    : offensive, practical, result-first
[+] output     : bugs, PoCs, tooling, risk maps, articles

Surface

☸️ Kubernetes Security

Cluster security reviews, RBAC and admission control, pod security standards, network policies, and the kind of misconfigurations that look harmless until a pod starts talking to the metadata endpoint.

☁️ Cloud Security

AWS / GCP / Azure security: IAM and privilege escalation paths, exposed control planes, storage and secrets hygiene, cloud-native detection gaps, and business logic that quietly grants far more access than intended.

📦 Container Security

Image and supply-chain security, registry hygiene, container escapes, runtime hardening, CTF/bug bounty background, and occasional late-night experiments with things that should not break out like that.


Signal

> I like security work that produces something concrete:
  a reproducible exploit, a working PoC, a clear risk map,
  a hardened configuration, a fixed architecture, or a painful
  business-risk conversation that should have happened earlier.
  • Built and led security teams across cloud-native platforms, AI platforms, and consulting.
  • Worked with systems ranging from Kubernetes clusters and container registries to multi-cloud infrastructure and developer tooling.
  • Still enjoy getting hands-on with Burp Suite, kubectl, Trivy, Falco, nmap, logs, traces, packet dumps, and a good YAML linter.
  • Active around bug bounty and CTF culture, with a few Hall of Fame mentions along the way.
  • Occasionally comment in media on cybercrime, cloud breaches, digital risks, and the practical side of defensive security.

Things I tend to ship

/ research notes       / small security tools
/ PoCs                 / cluster hardening guides
/ 0-day,1-day          / container escape sploits
/ threat models        / cloud & k8s architecture notes
GitHub stats Snake

Collaboration

I’m usually interested in work where security is treated as an engineering and business problem, not a ritual exercise.

Good reasons to reach out:

  • security review of an application, platform, or critical business flow;
  • penetration testing with realistic attack scenarios and practical remediation;
  • threat modeling and security architecture for enterprise systems;
  • cloud, kubernetes, containers, gitlab;
  • weird bugs, exploit ideas, research notes, or tools worth building.
result != "list of vulnerabilities"
result == "clear attack paths + business impact + prioritized fixes"

Contacts

LinkedIn


Pinned Loading

  1. MTKPI MTKPI Public

    🧰 Multi Tool Kubernetes Pentest Image

    Shell 265 23

  2. CVE-2024-0132 CVE-2024-0132 Public

    CVE-2024-0132 – Fully Weaponized NVIDIA Container Toolkit Exploit

    Dockerfile 6 1

  3. xzk8s xzk8s Public

    Dockerfile and Kubernetes manifests for reproduce CVE-2024-3094

    Dockerfile 14 3

  4. kong-xmrig kong-xmrig Public

    Unauthorized image of Kong Ingress Controller v.3.4.0 with XMRig cryptominer

    Dockerfile 1