
Elkeid
Elkeid is an open source solution that can meet the security requirements of various workloads such as hosts, containers and K8s, and serverless. It…

Elkeid is an open source solution that can meet the security requirements of various workloads such as hosts, containers and K8s, and serverless. It…

The OWASP DevSecOps Guideline can help us to embedding security as a part of the development pipeline.

Kubernetes driver extension of the Chaos Toolkit probes and actions API

Remote Code Execution in LocalStack 0.12.6

Terrier is a Image and Container analysis tool that can be used to scan Images and Containers to identify and verify the presence of specific files…

This tool can be used to enumerate the subdomains associated with a company by aggregating the results of multiple OSINT (Open Source Intelligence)…

End to End testing of Web, API, Cloud, Events and Security

A critical Remote Code Execution (RCE) vulnerability exists in Coolify's application deployment workflow. This flaw allows a low-privileged member to…

Secure-by-default demo lab showing how container hardening (distroless images, non-root, read-only filesystem, runtime-injected secrets) can…

Generates SCAP, Ansible, Bash, and CEL security content for compliance evaluation and automated hardening across Linux hosts, containers, and…

👀 A Kubernetes cluster resource sanitizer

Apache Log4j Zero Day Vulnerability aka Log4Shell aka CVE-2021-44228

Kubernetes Lab for CVE-2022-42889

Crafting raw TCP/IP packets to send to poorly configured Kubernetes servers - CVE-2020-8558 PoC


Container escape on any docker container with healthcheck enabled via CVE-2026-31431

PoC dockerfile image for CVE-2025-48384

IngressNightmare (CVE-2025-1974)