
CVE-2026-31431-CopyFail
Proof-of-concept exploit for CVE-2026-31431 (Copy Fail), a Linux kernel LPE via algif_aead page-cache corruption, with detection, lab, and mitigation…

Proof-of-concept exploit for CVE-2026-31431 (Copy Fail), a Linux kernel LPE via algif_aead page-cache corruption, with detection, lab, and mitigation…

A vulnerability scanner for container images and filesystems

Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

Secure OCI container runtime that runs workloads inside lightweight VMs, providing strong isolation across Kubernetes, containerd, and CRI-O with…

Open-source Kubernetes security platform scanning clusters, manifests, and images for misconfigurations, vulnerabilities, and compliance against NSA,…

Intentionally vulnerable Kubernetes cluster environment for hands-on security training. Includes 22+ scenarios covering container escape, RBAC…

📦 Make security testing of K8s, Docker, and Containerd easier.

Lightweight shell script for Docker container enumeration, privilege escalation, and container escapes. Automates discovery of misconfigurations and…

Cross-platform HTTP/2 C2 server and agent for post-exploitation in containerized environments, featuring container breakout modules, Kubernetes CVE…

Customizable Linux Persistence Tool for Security Research and Detection Engineering.

Original CVEs, exploit PoCs, and security advisories with detailed vulnerability chains, privilege escalation, and container escape techniques for…

A container analysis and exploitation tool for pentesters and engineers.

PoC: fully unprivileged container escape to node-level code execution on Kubernetes via CVE-2026-31431 page-cache corruption + shared image layers.…

Post-exploitation memory injector for Linux processes, bypassing ptrace to inject shellcode/payloads via /proc/pid/mem across x86-64, x86, ARM32…

Proof-of-concept and detection toolkit for CVE-2024-21626 runC container escape, featuring multiple exploit methods and Falco-based intrusion…

Master the art of cloud exploitation. A specialized resource for offensive security researchers and red teamers focused on weaponizing…

Detailed analysis and proof-of-concept exploit for CVE-2022-0185, a Linux kernel heap buffer overflow in the fsconfig syscall enabling local…

Detector + PoC for Linux page-cache write vulnerabilities: Copy Fail (CVE-2026-31431) and Dirty Frag (CVE-2026-43284/43500). Authorized security…