
CopyEscape-CVE-2026-17106
PoC repository for the blog post CopyEscape: Taking Over Docker Hosts with docker cp

PoC repository for the blog post CopyEscape: Taking Over Docker Hosts with docker cp

The code for personally reproducing the corresponding vulnerability

Proof of concept for CVE-2020-15257 in containerd.

Kubesploit is a cross-platform post-exploitation HTTP/2 Command & Control server and agent written in Golang, focused on containerized environments.

A container analysis and exploitation tool for pentesters and engineers.

Open-source deception platform that turns any Linux machine into a high-signal canary. Deploy tripwire sensors on files, ports, and network services…

Proof-of-concept exploits for CVE-2019-5736, a runC container escape vulnerability, demonstrating container breakout via malicious images and exec…

Nuclio Dashboard (NOP mode) accepts unauthenticated POST /api/functions. The spec.handler field isn't path-validated, so…

k0otkit is a universal post-penetration technique which could be used in penetrations against Kubernetes clusters.

Exploits CVE-2026-21005 by poisoning Docker Registry V2 Schema 1 manifests via unauthenticated pushes, enabling tag overwrite and supply-chain…