
mi-x
Determine whether your compute is truly vulnerable to a specific vulnerability by accounting for all factors which affect *actual* exploitability…

Determine whether your compute is truly vulnerable to a specific vulnerability by accounting for all factors which affect *actual* exploitability…

Exploits CVE-2026-21005 by poisoning Docker Registry V2 Schema 1 manifests via unauthenticated pushes, enabling tag overwrite and supply-chain…

Tracking IPV6_FRAG_ESCAPE (CVE-2026-53362, CVE-2026-53366), the IPv6 fragmentation container escape

Whalescan is a vulnerability scanner for Windows containers, which performs several benchmark checks, as well as checking for CVEs/vulnerable…

System utility that identifies and restarts daemons using outdated libraries after package upgrades to maintain security. Supports containers and…

OWASP Honeypot, Automated Deception Framework.

OpenSSH remote DOS exploit and vulnerable container

Shellshock exploit + vulnerable environment

NTPD remote DOS exploit and vulnerable container

Jenkins plugin providing shared API for Docker credential management, registry authentication, daemon configuration, and image fingerprinting across…

Docker images of Xpdf 4.04, vulnerable to CVE-2022-30524

PoC for iTerm2 CVEs CVE-2024-38396 and CVE-2024-38395 which allow code execution

Information about Kubernetes CVE-2020-8558, including proof of concept exploit.

Crafting raw TCP/IP packets to send to poorly configured Kubernetes servers - CVE-2020-8558 PoC

Proof of Concept code for proving CVE-2024-40635 vulnerability

Proof-of-concept exploit for CVE-2024-38819, demonstrating path traversal via symbolic links and percent-encoding in Spring Boot static file routing.

Vulnerability scanner written in Go which uses the data provided by https://osv.dev

eBPF-powered Linux observability with AI incident detection. AGPL-3.0 licensed.