
klar
Integration of Clair and Docker Registry

Integration of Clair and Docker Registry

SO-CRATES: Security Onion Containerized Rapid Analysis of Threats, Evil, and Sus!

The Swiss Army Container for Cloud Native Security. Container with all the list of useful tools/commands while hacking and securing Containers,…

A collection of real-world threat model examples across various technologies, providing practical insights into identifying and mitigating security…

Terrier is a Image and Container analysis tool that can be used to scan Images and Containers to identify and verify the presence of specific files…

This page is a result of the ongoing hands-on research around advanced Linux attacks, detection and forensics techniques and tools.

A container-based framework to enable the integration of mobile components in security training platforms

Unweaponized Proof of Concept for CVE-2019-5736 (Docker escape)

Curated collection of offensive security conference slide decks covering kernel and mobile exploitation, VM/container escapes, and…

Kubernetes driver extension of the Chaos Toolkit probes and actions API

Bento Toolkit is a minimal fedora-based container for penetration tests and CTF with the sweet addition of GUI applications.

The OWASP Subtractive Security Top 10 Project is an initiative to identify, document, and promote the highest-impact opportunities for reducing cyber…

insject is a tool for poking at containers. It enables you to run an arbitrary command in a container or any mix of Linux namespaces.

Security for the modern age of AI: defend against bad AI agents and malicious npm packages

A Trivy plugin that scans the images of a kubernetes resource

CVE-2026-33634 (CVSS 9.4) — The most impactful CI/CD supply chain attack of 2026 so far.

Proof of Concept exploit for Kubernetes CVE-2020-8559

Proof of concept for CVE-2020-15257 in containerd.