
deepce
Docker Enumeration, Escalation of Privileges and Container Escapes (DEEPCE)

Docker Enumeration, Escalation of Privileges and Container Escapes (DEEPCE)

insject is a tool for poking at containers. It enables you to run an arbitrary command in a container or any mix of Linux namespaces.

CVE-2022-0847 used to achieve container escape 利用CVE-2022-0847 (Dirty Pipe) 实现容器逃逸

CVE-2026-31431-killed page-cache exploit — code exec into containers sharing the same image layer


Educational proof-of-concept for CVE-2025-31133, a runc container escape via maskedPaths race condition. Includes lab setup, exploit script, and…


In this project, we found a recent attack through the malicious container and implemented a security mechanism to stop it.



A combination of CVE-2026-55494 and CVE-2026-62308 to get root privilege RCE in tugtainer

Tracking IPV6_FRAG_ESCAPE (CVE-2026-53362, CVE-2026-53366), the IPv6 fragmentation container escape