
traitor
:arrow_up: :skull_and_crossbones: :fire: Automatic Linux privesc via exploitation of low-hanging fruit e.g. gtfobins, pwnkit, dirty pipe, +w…

:arrow_up: :skull_and_crossbones: :fire: Automatic Linux privesc via exploitation of low-hanging fruit e.g. gtfobins, pwnkit, dirty pipe, +w…

Isolate your big brother apps https://secure-system.gitlab.io/Insular/

k0otkit is a universal post-penetration technique which could be used in penetrations against Kubernetes clusters.

CVE-2026-31431-killed page-cache exploit — code exec into containers sharing the same image layer

Proof-of-concept exploit for CVE-2022-0847 (DirtyPipe) enabling container breakout via kernel privilege escalation. Includes demonstration and…

📦 Make security testing of K8s, Docker, and Containerd easier.

R2S is a comprehensive exploitation and post-exploitation framework targeting the Next.js React Server Components vulnerability (CVE-2025-55182). It…

Go-based exploit for CVE-2019-5736 (Runc container escape) with a customizable reverse shell payload, designed for penetration testing and red team…

Peirates - Kubernetes Penetration Testing tool

CVE-2022-0185

Escalation of Privilege to the root through sudo binary with chroot option. CVE-2025-32463

Bash-based exploit script for CVE-2025-9074 that abuses the internal Docker API to mount the host C drive, execute commands inside a container, and…

Customizable Linux Persistence Tool for Security Research and Detection Engineering.

Original CVEs, exploit PoCs, and security advisories with detailed vulnerability chains, privilege escalation, and container escape techniques for…

Heavily-modified fork of David Buchanan's dlinject project. Injects arbitrary assembly (or precompiled binary) payloads directly into x86-64, x86,…

CVE-2025-31133 PoC

PoC for Dirty COW (CVE-2016-5195)

Proof-of-Concept exploit for CVE-2025-9074 - Unauthenticated Docker API exposure allowing arbitrary container creation and host filesystem access.