
veinmind-tools
veinmind-tools 是由长亭科技自研,基于 veinmind-sdk 打造的容器安全工具集

veinmind-tools 是由长亭科技自研,基于 veinmind-sdk 打造的容器安全工具集

A collection of manifests that will create pods with elevated privileges.

Kubesploit is a cross-platform post-exploitation HTTP/2 Command & Control server and agent written in Golang, focused on containerized environments.

A container analysis and exploitation tool for pentesters and engineers.

k0otkit is a universal post-penetration technique which could be used in penetrations against Kubernetes clusters.

Unweaponized Proof of Concept for CVE-2019-5736 (Docker escape)

CVE-2019-5736 POCs

Container escape proof-of-concept exploits for CVE-2026-80521 and CVE-2026-52910, with a disposable QEMU/Ubuntu VM harness for safe PoC execution.

Hands-on CI/CD pipeline security workshop with Terraform lab, AWS exploitation, Kubernetes escape, and artifact backdooring exercises for offensive…

PoC and Detection for CVE-2024-21626

Test whether a container environment is vulnerable to container escapes via CVE-2022-0492

CVE-2022-0847 used to achieve container escape 利用CVE-2022-0847 (Dirty Pipe) 实现容器逃逸

CVE-2026-53361 AF_UNIX GC vs MSG_PEEK use-after-free container escape

insject is a tool for poking at containers. It enables you to run an arbitrary command in a container or any mix of Linux namespaces.

PoC repository for the blog post CopyEscape: Taking Over Docker Hosts with docker cp

Proof of concept for CVE-2020-15257 in containerd.

3 linux kernel bugs chains to do secure comm app using side channel to establish key and establish covert channe;

getshell test