
rustnet
Per-process network monitoring for your terminal with deep packet inspection. Cross-platform, sandboxed.

Per-process network monitoring for your terminal with deep packet inspection. Cross-platform, sandboxed.

A pretty sweet vulnerability scanner

Black-box Kubernetes attack surface discovery tool that probes for unsecured clusters, exposed dashboards, and misconfigurations using…

Docker-based CVE-2018-10933 libssh authentication bypass exploit with patched client for testing SSH server vulnerabilities and unauthorized access…

A collection of scripts, and tips and tricks for hacking k8s clusters and containers.

Kubolt utility for scanning public kubernetes clusters

Container Blackbox Security Auditing Tool: enumerates security configuration from within the target container

Bento Toolkit is a minimal fedora-based container for penetration tests and CTF with the sweet addition of GUI applications.

WorldFirst (Public) Docker API Exploit - My security researches involving Docker and Openshift

CLI tool that explains CVEs in plain English and scans repos for impact. Powered by Claude.

OpenGraph collector for BloodHound that maps attack paths from DevOps to MLOps infrastructure, collecting CI/CD pipeline, service principal, and ML…

Single-script exploit for CVE-2026-44881 that chains .git credential leakage, Portainer Git-symlink injection, arbitrary host file read, and SSH…

PoC and Disclosure for CVE-2023-7231 – Memcached Gopher RCE chain

Exploit for CVE-2019-19030 that affects Harbor versions <1.10.3 and <2.0.1. Can also be used to enumerate and pull public projects from higher…

⭐ ⭐ Distributed tcpdump for cloud native environments ⭐ ⭐

Gorsair gives root access on remote docker containers that expose their APIs

Python PoC for CVE-2026-100835: audits Contrast manifests for AllowedChipIDs/AllowedPIIDs, detects versions, and probes Coordinator endpoints to…

Docker Enumeration, Escalation of Privileges and Container Escapes (DEEPCE)