
CloudSec
Master the art of cloud exploitation. A specialized resource for offensive security researchers and red teamers focused on weaponizing…

Master the art of cloud exploitation. A specialized resource for offensive security researchers and red teamers focused on weaponizing…

Hands-on CI/CD pipeline security workshop with Terraform lab, AWS exploitation, Kubernetes escape, and artifact backdooring exercises for offensive…

A vulnerability has been identified in Docker Desktop. A remote attacker could exploit this vulnerability to trigger security restriction bypass on…

Detector + PoC for Linux page-cache write vulnerabilities: Copy Fail (CVE-2026-31431) and Dirty Frag (CVE-2026-43284/43500). Authorized security…

Proof-of-concept exploit for CVE-2025-9074 demonstrating container-to-host file write via exposed Docker Engine API on Windows. For authorized…

Educational proof-of-concept for CVE-2025-31133, a runc container escape via maskedPaths race condition. Includes lab setup, exploit script, and…

Detailed analysis of the Copy Fail vulnerability (CVE-2026-31431) in the Linux kernel, including memory corruption mechanism, privilege escalation…

Public security advisory for CVE-2025-66209, CVE-2025-66210, CVE-2025-66211, CVE-2025-66212, and CVE-2025-66213

Analyzes and exploits a container escape vulnerability in legacy Docker/runc versions, demonstrating fd leakage to access the host filesystem, with…

In this project, we found a recent attack through the malicious container and implemented a security mechanism to stop it.

* React2Shell-CVE-2025-55182

* React2Shell-CVE-2025-55182

Basic POC to test CVE-2024-3094 vulnerability inside K8s cluster

A vulnerability scanner for container images and filesystems

A collection of manifests that will create pods with elevated privileges.

Kubesploit is a cross-platform post-exploitation HTTP/2 Command & Control server and agent written in Golang, focused on containerized environments.

This project is exploit for some docker containers with similar to vulnerability code: CVE-2020-35191

CLI tool and library for generating a Software Bill of Materials from container images and filesystems