
CDK
📦 Make security testing of K8s, Docker, and Containerd easier.

📦 Make security testing of K8s, Docker, and Containerd easier.

Go-based exploit for CVE-2019-5736 (Runc container escape) with a customizable reverse shell payload, designed for penetration testing and red team…

Peirates - Kubernetes Penetration Testing tool

Original CVEs, exploit PoCs, and security advisories with detailed vulnerability chains, privilege escalation, and container escape techniques for…

R2S is a comprehensive exploitation and post-exploitation framework targeting the Next.js React Server Components vulnerability (CVE-2025-55182). It…

Customizable Linux Persistence Tool for Security Research and Detection Engineering.

k0otkit is a universal post-penetration technique which could be used in penetrations against Kubernetes clusters.

:arrow_up: :skull_and_crossbones: :fire: Automatic Linux privesc via exploitation of low-hanging fruit e.g. gtfobins, pwnkit, dirty pipe, +w…

PoC for Dirty COW (CVE-2016-5195)

Escalation of Privilege to the root through sudo binary with chroot option. CVE-2025-32463

CVE-2022-0185

Isolate your big brother apps https://secure-system.gitlab.io/Insular/

Heavily-modified fork of David Buchanan's dlinject project. Injects arbitrary assembly (or precompiled binary) payloads directly into x86-64, x86,…

Linux LPE - Reliable Jail/Container Escape

CVE-2026-31431-killed page-cache exploit — code exec into containers sharing the same image layer

A vulnerability has been identified in Docker Desktop. A remote attacker could exploit this vulnerability to trigger security restriction bypass on…

Exploit for CVE-2021-25741 Kubernetes vulnerability allowing host filesystem mount into pods via race condition, with deployment scripts and…

CVE-2026-31431-killed page-cache exploit — code exec into containers sharing the same image layer