
ehids-agent
A Linux Host-based Intrusion Detection System based on eBPF.

A Linux Host-based Intrusion Detection System based on eBPF.

POCs and Tetragon Rules for CVE-2024-21626 and CVE-2025-31133

Bash-based Linux persistence detection tool for DFIR investigations. Scans 15+ persistence mechanisms (systemd, cron, kernel modules, SSH,…


C-based PoC for CVE-2019-5736

Proof of concept code for breaking out of docker via runC

Customizable Linux Persistence Tool for Security Research and Detection Engineering.

veinmind-tools 是由长亭科技自研,基于 veinmind-sdk 打造的容器安全工具集

Isolate your big brother apps https://secure-system.gitlab.io/Insular/

CVE-2022-36946 linux kernel panic in netfilter_queue

Tracking IPV6_FRAG_ESCAPE (CVE-2026-53362, CVE-2026-53366), the IPv6 fragmentation container escape

PoC funcional de CVE-2026-17106 (CopyEscape): carrera TOCTOU en docker cp que permite escritura arbitraria en el host Docker. Laboratorio Docker +…

Exposure checker and safe disposable-VM lab for CVE-2026-23111 (Linux nf_tables use-after-free local privilege escalation). Defensive: detection,…

DaemonSet для митигации уязвимости CVE-2026-64564 (SCTPhantom)

A collection of manifests that will create pods with elevated privileges.

Kubesploit is a cross-platform post-exploitation HTTP/2 Command & Control server and agent written in Golang, focused on containerized environments.

This project is exploit for some docker containers with similar to vulnerability code: CVE-2020-35191

📦 Make security testing of K8s, Docker, and Containerd easier.