
kube-linter
KubeLinter is a static analysis tool that checks Kubernetes YAML files and Helm charts to ensure the applications represented in them adhere to best…

KubeLinter is a static analysis tool that checks Kubernetes YAML files and Helm charts to ensure the applications represented in them adhere to best…

Declarative policy engine that enables authorization and policy enforcement across services, Kubernetes, Terraform, Docker, and APIs using the Rego…

A vulnerability scanner for container images and filesystems

Real-time cloud-native runtime security agent for Linux that monitors syscalls and container/Kubernetes metadata to detect anomalous behavior and…

CLI tool and library for generating a Software Bill of Materials from container images and filesystems

Peirates - Kubernetes Penetration Testing tool

Checks whether Kubernetes is deployed according to security best practices as defined in the CIS Kubernetes Benchmark

Customizable Linux Persistence Tool for Security Research and Detection Engineering.

A tool that shows detailed information about named pipes in Windows

A container analysis and exploitation tool for pentesters and engineers.

insject is a tool for poking at containers. It enables you to run an arbitrary command in a container or any mix of Linux namespaces.

FastGPT Python sandbox escape chain audit tool (CVE-2026-32128 related, v4.14.8 inspect chain)

Fawkes is a golang Mythic C2 Agent exclusively written by AI.

Bash-based Linux persistence detection tool for DFIR investigations. Scans 15+ persistence mechanisms (systemd, cron, kernel modules, SSH,…

Kestra Unauthenticated RCE Exploit (CVE-2026-53576)

CVE-2021-21978 exp