
mi-x
Determine whether your compute is truly vulnerable to a specific vulnerability by accounting for all factors which affect *actual* exploitability…

Determine whether your compute is truly vulnerable to a specific vulnerability by accounting for all factors which affect *actual* exploitability…

Pentester-focused Docker registry tool to enumerate and pull images

The OWASP Subtractive Security Top 10 Project is an initiative to identify, document, and promote the highest-impact opportunities for reducing cyber…

AI-powered Docker security scanner that explains vulnerabilities in plain English. An OWASP Lab Project.

A secure* runtime for autonomous AI agents. Policy from plain-English constitutions. (*https://ironcurtain.dev)

XZ Utils CVE-2024-3094 POC for Kubernetes

Exploitable target to CVE-2017-5638

Defensive security demo: seL4 microkernel gateway protecting vulnerable ICS from CVE-2019-14462

Secure-by-default demo lab showing how container hardening (distroless images, non-root, read-only filesystem, runtime-injected secrets) can…

This project is exploit for some docker containers with similar to vulnerability code: CVE-2020-35191

webapp vulnerable to CVE-2021-44228


A critical Remote Code Execution (RCE) vulnerability exists in Coolify's application deployment workflow. This flaw allows a low-privileged member to…


This is a container environment running CVE-2024-3094 sshd backdoor instance, working with https://github.com/amlweems/xzbot project. IT IS NOT…

In this project, we found a recent attack through the malicious container and implemented a security mechanism to stop it.