
kubesploit
Kubesploit is a cross-platform post-exploitation HTTP/2 Command & Control server and agent written in Golang, focused on containerized environments.

Kubesploit is a cross-platform post-exploitation HTTP/2 Command & Control server and agent written in Golang, focused on containerized environments.

A container analysis and exploitation tool for pentesters and engineers.

k0otkit is a universal post-penetration technique which could be used in penetrations against Kubernetes clusters.

Unweaponized Proof of Concept for CVE-2019-5736 (Docker escape)

Vulnerability scanner based on vulners.com audit API

Container Blackbox Security Auditing Tool: enumerates security configuration from within the target container

POC for CVE-2021-41091

Information about Kubernetes CVE-2020-8558, including proof of concept exploit.

A lightweight command sandbox for Linux, secure-by-default, built on Landlock.

CVE-2022-0847 used to achieve container escape 利用CVE-2022-0847 (Dirty Pipe) 实现容器逃逸

Proof of concept for CVE-2020-15257 in containerd.

Vulnerability Assessment Scanner with Report Generation



Automated deployment of OWASP Juice Shop on Kubernetes using kubeadm and Terraform, with integrated Trivy vulnerability scanning for DevSecOps…


The code for personally reproducing the corresponding vulnerability

Live cryptojacking toolkit with CVE-2026-31431 LPE exploit, container escape, kernel rootkit, and XMRig Monero miner, captured from real attacks for…