
CVE-2026-7791
Local Privilege Escalation in Amazon WorkSpaces via TOCTOU and Arbitrary File Write

Local Privilege Escalation in Amazon WorkSpaces via TOCTOU and Arbitrary File Write

Copy Fail: 732 Bytes to Root on Every Major Linux Distribution.

CVE-2026-32646: Missing Authentication on Admin Device Endpoint — Gardyn Home Kit (ICSA-26-055-03)

CVE-2026-28767: Missing Authentication on Admin Notifications Endpoint — Gardyn Home Kit (ICSA-26-055-03)

CVE-2026-40564: SSRF via FlinkSessionJob jarURI in apache/flink-kubernetes-operator. Self-contained reproducer that runs on a local kind cluster with…

CVE-2026-28766: Missing Authentication on User Account Endpoint — Gardyn Home Kit (ICSA-26-055-03)

My view on IngressNightmare vulnerability (CVE-2025-1974)

Kubernetes gitRepo volume vulnerability (CVE-2024-10220) exploit for controlled HPC security research, demonstrating arbitrary command execution on…

Ansible playbook automating CVE-2016-5195 (Dirty COW) mitigation on CentOS/Scientific Linux using SystemTap kernel module generation.

Go-based exploit for CVE-2021-43858 targeting MinIO privilege escalation vulnerability. Executes against a specified IP and port to demonstrate the…

Proof-of-concept exploit for CVE-2020-8554, demonstrating Kubernetes service externalIP manipulation to achieve man-in-the-middle attacks on cluster…

Playbooks 'Fix for CVE-2015-0235(GHOST)' running on Ansible

A script to change OpenSSL versions on Ubuntu to 1.1.1q to protect against CVE-2022-2097.

Vulnerability scanner based on vulners.com audit API

👀 A Kubernetes cluster resource sanitizer

Sub-millisecond VM sandboxes for AI agents via copy-on-write forking

An exhaustive list of all the possible ways you can chain your Blind SSRF vulnerability

Review Access - kubectl plugin to show an access matrix for k8s server resources