
k0otkit
k0otkit is a universal post-penetration technique which could be used in penetrations against Kubernetes clusters.

k0otkit is a universal post-penetration technique which could be used in penetrations against Kubernetes clusters.

Kubesploit is a cross-platform post-exploitation HTTP/2 Command & Control server and agent written in Golang, focused on containerized environments.

PoC repository for the blog post CopyEscape: Taking Over Docker Hosts with docker cp

A container analysis and exploitation tool for pentesters and engineers.

Proof-of-concept exploits for CVE-2019-5736, a runC container escape vulnerability, demonstrating container breakout via malicious images and exec…

Nuclio Dashboard (NOP mode) accepts unauthenticated POST /api/functions. The spec.handler field isn't path-validated, so…

Proof of concept for CVE-2020-15257 in containerd.

The code for personally reproducing the corresponding vulnerability