
fastgpt-sandbox-audit
FastGPT Python sandbox escape chain audit tool (CVE-2026-32128 related, v4.14.8 inspect chain)

FastGPT Python sandbox escape chain audit tool (CVE-2026-32128 related, v4.14.8 inspect chain)

PoC for Docker `docker cp` arbitrary file write, exploiting symlink and tar extraction flaws to overwrite host binaries or launch agents for…

Docker Container-to-Host Remote Code Execution POC via vllm-metal trust_remote_code=True

Docker Container Escape POC via mlx-metal importlib

Docker Model Runner container-to-host RCE / Escape: A critical vulnerability that allows for container-to-host code execution in the Docker Model…


Local privilege escalation PoC for a Linux kernel SCTP ASCONF DEL-IP use-after-free, demonstrating a root shell from an unprivileged local user on…

Customizable Linux Persistence Tool for Security Research and Detection Engineering.


insject is a tool for poking at containers. It enables you to run an arbitrary command in a container or any mix of Linux namespaces.

POC shows how to leak postgresql stuff cause hugefile sub-system. Based on https://x.com/spendergrsec/status/1993794163880718700?s=20

Docker Enumeration, Escalation of Privileges and Container Escapes (DEEPCE)

CVE-2026-31431 Copy Fail — Linux kernel LPE tester via MCP

CVE-2021-21978 exp

Proof-of-Concept exploit for CVE-2025-9074 - Unauthenticated Docker API exposure allowing arbitrary container creation and host filesystem access.

非常简单的CVE-2023-0386's exp and analysis.Use c and sh.