
syft
CLI tool and library for generating a Software Bill of Materials from container images and filesystems

CLI tool and library for generating a Software Bill of Materials from container images and filesystems

A vulnerability scanner for container images and filesystems

Peirates - Kubernetes Penetration Testing tool

Customizable Linux Persistence Tool for Security Research and Detection Engineering.

A container analysis and exploitation tool for pentesters and engineers.

A tool that shows detailed information about named pipes in Windows

insject is a tool for poking at containers. It enables you to run an arbitrary command in a container or any mix of Linux namespaces.

Bash-based Linux persistence detection tool for DFIR investigations. Scans 15+ persistence mechanisms (systemd, cron, kernel modules, SSH,…

FastGPT Python sandbox escape chain audit tool (CVE-2026-32128 related, v4.14.8 inspect chain)

KubeLinter is a static analysis tool that checks Kubernetes YAML files and Helm charts to ensure the applications represented in them adhere to best…

Kestra Unauthenticated RCE Exploit (CVE-2026-53576)

Checks whether Kubernetes is deployed according to security best practices as defined in the CIS Kubernetes Benchmark

Fawkes is a golang Mythic C2 Agent exclusively written by AI.

Real-time cloud-native runtime security agent for Linux that monitors syscalls and container/Kubernetes metadata to detect anomalous behavior and…

CVE-2021-21978 exp

Declarative policy engine that enables authorization and policy enforcement across services, Kubernetes, Terraform, Docker, and APIs using the Rego…