
trivy
Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

Kata Containers is an open source project and community working to build a standard implementation of lightweight Virtual Machines (VMs) that feel…

Hunt for security weaknesses in Kubernetes clusters

Declarative policy engine that enables authorization and policy enforcement across services, Kubernetes, Terraform, Docker, and APIs using the Rego…

Real-time cloud-native runtime security agent for Linux that monitors syscalls and container/Kubernetes metadata to detect anomalous behavior and…

📦 Make security testing of K8s, Docker, and Containerd easier.

Validation of best practices in your Kubernetes clusters

Proof-of-concept exploit for CVE-2026-31431, a Linux kernel local privilege escalation via AF_ALG page cache write, achieving root on major…

R2S is a comprehensive exploitation and post-exploitation framework targeting the Next.js React Server Components vulnerability (CVE-2025-55182). It…

Peirates - Kubernetes Penetration Testing tool

* React2Shell-CVE-2025-55182

Docker Enumeration, Escalation of Privileges and Container Escapes (DEEPCE)

Fawkes is a golang Mythic C2 Agent exclusively written by AI.

Walk any memory dump. Find what's hidden. Linux + Windows kernel forensics from a single static Rust binary — no Python required.

Master the art of cloud exploitation. A specialized resource for offensive security researchers and red teamers focused on weaponizing…

A collection of manifests that will create pods with elevated privileges.

Hack The Box - Silentium machine writeup | CVE-2025-58434, CVE-2025-59528, CVE-2025-8110

110 offensive-security one-liners for authorized testing and CTFs, grouped by category and kill-chain step.