
CopyEscape-CVE-2026-17106
PoC repository for the blog post CopyEscape: Taking Over Docker Hosts with docker cp

PoC repository for the blog post CopyEscape: Taking Over Docker Hosts with docker cp

PoC funcional de CVE-2026-17106 (CopyEscape): carrera TOCTOU en docker cp que permite escritura arbitraria en el host Docker. Laboratorio Docker +…

PoC for Docker `docker cp` arbitrary file write, exploiting symlink and tar extraction flaws to overwrite host binaries or launch agents for…

A 16-year-old bug in the Linux kernel lets a rented VM break out and attack the host it runs on. Intel and AMD alike. Januscape is a use-after-free…

Proof-of-Concept exploit for CVE-2025-9074 - Unauthenticated Docker API exposure allowing arbitrary container creation and host filesystem access.

PoC for CVE-2024-21626: runc leaks an internal fd referencing the host CWD before pivot_root, enabling container escape by setting process.cwd to…

This repository provides a high-fidelity technical deconstruction and production-ready exploitation suite for CVE-2019-5736. It demonstrates how a…

Kubesploit is a cross-platform post-exploitation HTTP/2 Command & Control server and agent written in Golang, focused on containerized environments.

A container analysis and exploitation tool for pentesters and engineers.

k0otkit is a universal post-penetration technique which could be used in penetrations against Kubernetes clusters.

Unweaponized Proof of Concept for CVE-2019-5736 (Docker escape)

CVE-2022-0847 used to achieve container escape 利用CVE-2022-0847 (Dirty Pipe) 实现容器逃逸

Proof of concept for CVE-2020-15257 in containerd.



PHP poc, exploit for CVE-2025-9074

Live cryptojacking toolkit with CVE-2026-31431 LPE exploit, container escape, kernel rootkit, and XMRig Monero miner, captured from real attacks for…

Docker CVE-2022-37708