
nono
Sandbox any AI agent in seconds - zero setup, zero latency.

Sandbox any AI agent in seconds - zero setup, zero latency.

Let your AI go full send. Your home directory stays home.

PoC for CVE-2026-73519 - WolfStack hardcoded cluster secret leads to unauthenticated RCE (CVSS 9.8)

AI-first security scanner. NEW in v2026.7: Claude Code compromise detection — vet .claude/ hooks, permissions & skills before you clone — plus an…

Docker Model Runner container-to-host RCE / Escape: A critical vulnerability that allows for container-to-host code execution in the Docker Model…

📦 Make security testing of K8s, Docker, and Containerd easier.

A simple Docker lab and Exploit setup for CVE-2021-3156 - "Baron Samedit".

LXC Information Disclosure vulnerability.

CVE-2022-0847 used to achieve container escape 利用CVE-2022-0847 (Dirty Pipe) 实现容器逃逸

insject is a tool for poking at containers. It enables you to run an arbitrary command in a container or any mix of Linux namespaces.

McAfee Virus Scan for Linux multiple remote flaws (CVE 2016-8016, CVE 2016-8017, CVE 2016-8018, CVE 2016-8019, CVE 2016-8020, CVE 2016-8021, CVE…