
ipv6_frag_escape
Tracking IPV6_FRAG_ESCAPE (CVE-2026-53362, CVE-2026-53366), the IPv6 fragmentation container escape

Tracking IPV6_FRAG_ESCAPE (CVE-2026-53362, CVE-2026-53366), the IPv6 fragmentation container escape

A combination of CVE-2026-55494 and CVE-2026-62308 to get root privilege RCE in tugtainer

CVE-2026-31431-killed page-cache exploit — code exec into containers sharing the same image layer

Educational proof-of-concept for CVE-2025-31133, a runc container escape via maskedPaths race condition. Includes lab setup, exploit script, and…

Docker Enumeration, Escalation of Privileges and Container Escapes (DEEPCE)



In this project, we found a recent attack through the malicious container and implemented a security mechanism to stop it.


CVE-2022-0847 used to achieve container escape 利用CVE-2022-0847 (Dirty Pipe) 实现容器逃逸

insject is a tool for poking at containers. It enables you to run an arbitrary command in a container or any mix of Linux namespaces.