
tugtainer-1.30.2-CVE-2026-55494-and-CVE-2026-62308-to-RCE
A combination of CVE-2026-55494 and CVE-2026-62308 to get root privilege RCE in tugtainer

A combination of CVE-2026-55494 and CVE-2026-62308 to get root privilege RCE in tugtainer

Kata Containers is an open source project and community working to build a standard implementation of lightweight Virtual Machines (VMs) that feel…

Fawkes is a golang Mythic C2 Agent exclusively written by AI.

R2S is a comprehensive exploitation and post-exploitation framework targeting the Next.js React Server Components vulnerability (CVE-2025-55182). It…

Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

Real-time cloud-native runtime security agent for Linux that monitors syscalls and container/Kubernetes metadata to detect anomalous behavior and…

Validation of best practices in your Kubernetes clusters

📦 Make security testing of K8s, Docker, and Containerd easier.

Docker Enumeration, Escalation of Privileges and Container Escapes (DEEPCE)


Kestra Unauthenticated RCE Exploit (CVE-2026-53576)

A script for exploiting CVE-2022-1227

Checks whether Kubernetes is deployed according to security best practices as defined in the CIS Kubernetes Benchmark

KubeLinter is a static analysis tool that checks Kubernetes YAML files and Helm charts to ensure the applications represented in them adhere to best…

Kubesploit is a cross-platform post-exploitation HTTP/2 Command & Control server and agent written in Golang, focused on containerized environments.

k0otkit is a universal post-penetration technique which could be used in penetrations against Kubernetes clusters.

Test whether a container environment is vulnerable to container escapes via CVE-2022-0492

insject is a tool for poking at containers. It enables you to run an arbitrary command in a container or any mix of Linux namespaces.