
CVE-2026-23111-nftables-lab
Exposure checker and safe disposable-VM lab for CVE-2026-23111 (Linux nf_tables use-after-free local privilege escalation). Defensive: detection,…

Exposure checker and safe disposable-VM lab for CVE-2026-23111 (Linux nf_tables use-after-free local privilege escalation). Defensive: detection,…

A Linux Host-based Intrusion Detection System based on eBPF.

Exploit for CVE-2023-27326 enabling local privilege escalation via path validation flaw in Parallels Desktop Toolgate component, allowing arbitrary…

A vulnerability has been identified in Docker Desktop. A remote attacker could exploit this vulnerability to trigger security restriction bypass on…

Proof-of-concept exploit for CVE-2022-39253 demonstrating Docker container escape via malicious Git repository build, enabling host file system read…

Proof-of-concept exploit for Kata Containers container escape (CVE-2020-2023) using mknod to modify guest filesystem and overwrite system binaries…

Proof-of-concept exploit for CVE-2024-21626, a runc container escape vulnerability allowing host file system access via crafted working directory in…

Lightweight terminal script to detect Linux kernel vulnerability CVE-2026-23111, enabling container escape and privilege escalation. Checks system…

Exploit for CVE-2019-5736, a container escape vulnerability in Docker runC, enabling host file system access from a compromised container.

Sandboxes containers via a userspace application kernel that intercepts system calls, limits host kernel access, and integrates with…

Docker Breakout Checker and PoC via CAP_SYS_ADMIN and via user namespaces (CVE-2022-0492)

Proof-of-concept kernel exploit demonstrating cross-container information leakage via Linux hugefile subsystem, targeting PostgreSQL processes.

Real-time cloud-native runtime security agent for Linux that monitors syscalls and container/Kubernetes metadata to detect anomalous behavior and…