
Docker-Security
Getting a handle on container security

Getting a handle on container security

A tool to scan Kubernetes cluster for risky permissions

A secure* runtime for autonomous AI agents. Policy from plain-English constitutions. (*https://ironcurtain.dev)

A collection of manifests that will create pods with elevated privileges.

Let your AI go full send. Your home directory stays home.

A Blazing fast Security Auditing tool for Kubernetes

Vulnerability scanner based on vulners.com audit API

ClamAV antivirus scanning for Node.js — scan file uploads with a single function call. Zero dependencies. Typed Symbol verdicts. Local or…

Execution-Layer Security (ELS) for AI agents — policy-enforced shell with audit.

CVE-2021-41773 playground

k0otkit is a universal post-penetration technique which could be used in penetrations against Kubernetes clusters.

A container-based framework to enable the integration of mobile components in security training platforms

eBPF-powered Linux observability with AI incident detection. AGPL-3.0 licensed.

Unweaponized Proof of Concept for CVE-2019-5736 (Docker escape)

Shellshock exploit + vulnerable environment

Secure runtime to sandbox AI agent tasks. Run untrusted code in isolated WebAssembly environments.

Sigma Rules Engine inside the Linux Kernel using eBPF. Focusing on prevention capabilities

WASM sandbox with capability enforcement for AI agent code. Agents can only call explicitly provided tools with defined constraints. Sandboxed…