
Awesome-Pentest
A list of awesome penetration testing tools and resources.

A list of awesome penetration testing tools and resources.

vRealize RCE + Privesc (CVE-2021-21975, CVE-2021-21983, CVE-0DAY-?????)

Exploit for CVE-2025-1974 targeting ingress-nginx controllers in Kubernetes, enabling container escape via crafted shared object injection and shell…

Serverless AWS solution for distributing recon and vulnerability scanning workloads. Submit tasks via web UI; EC2 workers execute custom Python…

POC for CVE-2022-23648

Rogue device enrollment tool for Entra ID and Intune MDM. Automates device join, token acquisition, MDM enrollment, and OMA-DM checkin to extract…

Kernel-level security engine using eBPF-LSM to enforce file access policies based on process lineage, protecting sensitive data from supply-chain…

Modular penetration testing framework with a Metasploit-like interactive shell, pre-built CVE exploit modules, and cloud/network reconnaissance…

CVE-2025-59501 POC code

PoC for CVE-2021-1056, related to GPU Container Security

Read-only Entra ID app-credential assessment: enumerates Graph permissions, Azure RBAC, and reachable cloud data, then maps findings to…

a CLI for ephemeral penetration testing

Proof of Concept exploit for Kubernetes CVE-2020-8559

A script to check if a container environment is vulnerable to container escapes via CVE-2022-0492

Automated Persistence and Lateral Movement using GCP Patch Management

Proof-of-concept demonstrating container escape on Amazon EKS by exploiting Dirty Frag (CVE-2026-43284) kernel page-cache corruption via shared image…

Scanner for vScalation (CVE-2021-22015) a Local Privilege Escalation in VMWare vCenter

Docker Breakout Checker and PoC via CAP_SYS_ADMIN and via user namespaces (CVE-2022-0492)