
security-labs-pocs
Proof of concept code for Datadog Security Labs referenced exploits.

Proof of concept code for Datadog Security Labs referenced exploits.

Original CVEs, exploit PoCs, and security advisories with detailed vulnerability chains, privilege escalation, and container escape techniques for…

Master the art of cloud exploitation. A specialized resource for offensive security researchers and red teamers focused on weaponizing…

Detector + PoC for Linux page-cache write vulnerabilities: Copy Fail (CVE-2026-31431) and Dirty Frag (CVE-2026-43284/43500). Authorized security…

Educational proof-of-concept for CVE-2025-31133, a runc container escape via maskedPaths race condition. Includes lab setup, exploit script, and…

Public security advisory for CVE-2025-66209, CVE-2025-66210, CVE-2025-66211, CVE-2025-66212, and CVE-2025-66213

In this project, we found a recent attack through the malicious container and implemented a security mechanism to stop it.

Proof-of-concept CVE exploit and lab scripts for sandbox/VM isolation, targeting authorized environments such as Docker and virtual machines for…

A vulnerability has been identified in Docker Desktop. A remote attacker could exploit this vulnerability to trigger security restriction bypass on…

110 offensive security one-liners for authorized testing and CTFs, organized in one markdown notebook by category and kill-chain step. Dual-use…

* React2Shell-CVE-2025-55182

* React2Shell-CVE-2025-55182

Basic POC to test CVE-2024-3094 vulnerability inside K8s cluster


Kestra Unauthenticated RCE Exploit (CVE-2026-53576)

Docker Enumeration, Escalation of Privileges and Container Escapes (DEEPCE)

A container analysis and exploitation tool for pentesters and engineers.

k0otkit is a universal post-penetration technique which could be used in penetrations against Kubernetes clusters.