
kubernetes-goat
Intentionally vulnerable Kubernetes cluster environment for hands-on security training. Includes 22+ scenarios covering container escape, RBAC…

Intentionally vulnerable Kubernetes cluster environment for hands-on security training. Includes 22+ scenarios covering container escape, RBAC…

The OWASP DevSecOps Guideline can help us to embedding security as a part of the development pipeline.

OpenSSH remote DOS exploit and vulnerable container

VULCONHUB provides access to files to build your own hands-on vulnerable container image to learn and practice security

Hands-on lab demonstrating Kubernetes container hardening by comparing default vs. security-enhanced deployments of a vulnerable note-taking…

This is a container built for demonstration purposes that has a version of the sudo command which is vulnerable to CVE-2019-14287

Proof-of-Concept for CVE-2024-52005: ANSI escape sequence injection in Git. Demonstrates incorrect 'not_affected' VEX claims in hardened container…

A lightweight alternative to OpenClaw that runs in containers for security. Connects to WhatsApp, Telegram, Slack, Discord, Gmail and other messaging…

Awesome free cloud native security learning labs. Includes CTF, self-hosted workshops, guided vulnerability labs, and research labs.

Sandboxed devcontainer for running Claude Code in bypass mode safely. Built for security audits and untrusted code review.

AI-powered Docker security scanner that explains vulnerabilities in plain English. An OWASP Lab Project.

Kubernetes Security Training Platform - focusing on security mitigation

A Microservices-based framework for the study of Network Security and Penetration Test techniques

SO-CRATES: Security Onion Containerized Rapid Analysis of Threats, Evil, and Sus!

A collection of real-world threat model examples across various technologies, providing practical insights into identifying and mitigating security…

An AI personal assistant with a focus on security.

Curated collection of offensive security conference slide decks covering kernel and mobile exploitation, VM/container escapes, and…

Roundcube 1.0.0 <= 1.2.2 Remote Code Execution exploit and vulnerable container