
OpenShell
Sandboxed runtime for autonomous AI agents with declarative YAML policies enforcing filesystem, network, and process constraints, plus endpoint-bound…

Sandboxed runtime for autonomous AI agents with declarative YAML policies enforcing filesystem, network, and process constraints, plus endpoint-bound…

Hunt for security weaknesses in Kubernetes clusters

eBPF-based Security Observability and Runtime Enforcement

The Most Comprehensive Docker Security Scanner

Java client library for the Kubernetes API, enabling programmatic management of clusters, pods, deployments, and other resources with support for…

AI-first security scanner. NEW in v2026.7: Claude Code compromise detection — vet .claude/ hooks, permissions & skills before you clone — plus an…

A script to check if a container environment is vulnerable to container escapes via CVE-2022-0492


Port Scanner with Docker & Prometheus + Grafana integration. A tool for network auditing with multithreading support and real-time monitoring.

Docker-based lab for practicing WordPress CVE-2024-1071 exploitation with automated PoC scripts and step-by-step setup instructions.

New vulnerability found in Docker. Credit for finding the vulnerability goes to Felix Boulet

Repository to install CVE-2023-7028 vulnerable Gitlab instance