


Dockerized mail server suite with Postfix, Dovecot, Rspamd, and ClamAV. Provides secure email hosting with integrated spam filtering, antivirus, and…

Kubesploit is a cross-platform post-exploitation HTTP/2 Command & Control server and agent written in Golang, focused on containerized environments.

Krawl is a customizable, lightweight, cloud-native web deception server and anti-crawler that creates fake web applications with low-hanging…

A container image that exfiltrates the underlying container runtime to a remote server

Like Envoy xDS, but for eBPF filters

Lightweight, secure Linux sandboxes for untrusted processes. Runs in the browser and on the server.

Security scanner for CVE-2025-55182 - Critical RCE vulnerability in React Server Components. Scan npm/pnpm/yarn lockfiles, Docker images, SBOMs,…

Vulnerability as a service: showcasing CVS-2014-0160, a.k.a. Heartbleed

AIO Cloud Managment Server

A lab demonstration of the log4shell vulnerability: CVE-2021-44228



CVE-2025-59376, CVE-2025-59377

nginx 1.15.10 patch against cve-2021-23017 (ingress version)

A containerized testing environment for CVE-2025-55182, a critical (10.0 CVSS) Remote Code Execution vulnerability in React Server Components.

Apache HTTP Server 2.4.50 - RCE Lab
