
CVE_2026_31431
Exploit for CVE-2026-31431, a Linux kernel page-cache write primitive enabling local privilege escalation and container escape via AF_ALG and…

Exploit for CVE-2026-31431, a Linux kernel page-cache write primitive enabling local privilege escalation and container escape via AF_ALG and…

Go-based exploit for CVE-2019-5736 (Runc container escape) with a customizable reverse shell payload, designed for penetration testing and red team…

Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

A vulnerability scanner for container images and filesystems

* React2Shell-CVE-2025-55182

Docker Enumeration, Escalation of Privileges and Container Escapes (DEEPCE)

Peirates - Kubernetes Penetration Testing tool

Run iOS apps without actually installing them!

k0otkit is a universal post-penetration technique which could be used in penetrations against Kubernetes clusters.

PoC exploit for CVE-2025-9074 demonstrating a full Docker Desktop container escape on Windows and macOS via an unauthenticated internal Docker Engine…

Open-source Kubernetes security platform scanning clusters, manifests, and images for misconfigurations, vulnerabilities, and compliance against NSA,…

Validation of best practices in your Kubernetes clusters

Exposure checker and safe disposable-VM lab for CVE-2026-23111 (Linux nf_tables use-after-free local privilege escalation). Defensive: detection,…

PoC for Docker `docker cp` arbitrary file write, exploiting symlink and tar extraction flaws to overwrite host binaries or launch agents for…

Exploits CVE-2026-41567 Docker escape using trojanized xz/unpigz binaries to gain a root shell on the host from inside a container.

Checks whether Kubernetes is deployed according to security best practices as defined in the CIS Kubernetes Benchmark

📦 Make security testing of K8s, Docker, and Containerd easier.

Customizable Linux Persistence Tool for Security Research and Detection Engineering.