
CVE2026-42926
Controlled NGINX HTTP/2 frame injection lab for CVE-2026-42926 patch validation and defensive research

Controlled NGINX HTTP/2 frame injection lab for CVE-2026-42926 patch validation and defensive research

Sandboxed devcontainer for running Claude Code in bypass mode safely. Built for security audits and untrusted code review.

Prowler is the world’s most widely used open-source cloud security platform that automates security and compliance across any cloud environment.…

Automate the creation of a lab environment complete with security tooling and logging best practices

Manages the core lifecycle of Qubes OS domains via a Python admin API, handling secure compartmentalization with Xen and exposing an event system for…

eBPF-based workaround for CVE-2026-31431 (Copy.Fail) that filters or kills AF_ALG socket creation to prevent local privilege escalation and container…

Container Blackbox Security Auditing Tool: enumerates security configuration from within the target container

Linux namespaces and seccomp-bpf sandbox

Windows Process Lockdown Tool using Job Objects

eBPF LSM program that blocks AF_ALG socket creation to mitigate CVE-2026-31431, with userspace daemon logging denied attempts via ring buffer.