
trivy
Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

Kata Containers is an open source project and community working to build a standard implementation of lightweight Virtual Machines (VMs) that feel…

Hunt for security weaknesses in Kubernetes clusters

Real-time cloud-native runtime security agent for Linux that monitors syscalls and container/Kubernetes metadata to detect anomalous behavior and…

Declarative policy engine that enables authorization and policy enforcement across services, Kubernetes, Terraform, Docker, and APIs using the Rego…

📦 Make security testing of K8s, Docker, and Containerd easier.

Proof-of-concept exploit for CVE-2026-31431, a Linux kernel local privilege escalation via AF_ALG page cache write, achieving root on major…

Validation of best practices in your Kubernetes clusters

R2S is a comprehensive exploitation and post-exploitation framework targeting the Next.js React Server Components vulnerability (CVE-2025-55182). It…

Peirates - Kubernetes Penetration Testing tool

* React2Shell-CVE-2025-55182

Docker Enumeration, Escalation of Privileges and Container Escapes (DEEPCE)

Fawkes is a golang Mythic C2 Agent exclusively written by AI.

Walk any memory dump. Find what's hidden. Linux + Windows kernel forensics from a single static Rust binary — no Python required.

110 offensive-security one-liners for authorized testing and CTFs, grouped by category and kill-chain step.

Hack The Box - Silentium machine writeup | CVE-2025-58434, CVE-2025-59528, CVE-2025-8110

A collection of manifests that will create pods with elevated privileges.

Master the art of cloud exploitation. A specialized resource for offensive security researchers and red teamers focused on weaponizing…