NewYour coding agent can read the release notes before it upgrades.Set up the MCP server →
Go modules · #1303 by repository stars
Last release 14 days ago
22 Sep 2026
Release timing varies
gaps range from 1 weeks to 11 months
Most releases are documented
notes for 46 of the last 60 stable releases
Nothing withdrawn
no release was ever pulled
8 years old
106 releases · first in 2019
Nothing published for this version
Nothing published for this version
Nothing published for this version
One column per quarter.
added quick commands for switching service accounts and namespace, without having to navigate submenus
Nothing published for this version
added a kubectl-try-all feature - tries every service account and client cert that peirates has gathered it has until it finds one that can do the com
execute shell commands from the main menu via "shell [args]"
Nothing published for this version
Peirates can now be run outside of a pod.
Nothing published for this version
Peirates now uses kubelet certs if run on a node
Nothing published for this version
Nothing published for this version
Updated GCP metadata API token parsing for Google's change
Nothing published for this version
- Added JWT parsing
Simple TCP portscan functionality
Nothing published for this version
Many changes to appease the linter.
adds an AWS version of the kops state bucket attack
Nothing published for this version
You can now toggle Peirates' checking if each action is permitted by RBAC before doing it.
adds custom headers to curl and IP address discovery for hostPath mounting trick
This version adds a curl-style feature, such that the user can make arbitrary GET and POST requests.
This release adds non-numeric aliases for menu items and makes a few code-cleanups.
Nothing published for this version
Added AWS S3 bucket list and content list capabilities
Added error fall through to the injection into other pods, making this more beautiful.
Updated version number and cleaned up print statements.
Implemented the insert-peirates-into-another-pod - more coming.
Changed a path for service accounts mounted into pods from /run/secrets/... to /var/run/secrets/...
This release adds a flexible kubectl menu item, allowing you to use the service account tokens you've acquired flexibly to perform actions that don't
Refactored URL requests and JSON parsing
Allowed for long-running kube-exec commands by excepting them from the timers
In this release, we've adjusted the service account token-gathering functions to store the tokens automatically for re-use
Added ability to switch to a service account at the time you enter it.
Final "Break Glass" release for demos
- See
Nothing published for this version
This release adds credential theft via GCS, refactors the menu and is the current pre-conference "break glass" release, having received testing at tho
Auth checks added to avoid crashes when requested action isn't allowed
- Reverse TCP shell added
Nothing published for this version
Nothing published for this version
Nothing published for this version
Nothing published for this version
Your coding agent can read these notes before it upgrades. Set up the MCP server →