
MongoBleed-exploit
MongoBleed (CVE-2025-14847) Lab & PoC : A complete educational environment to reproduce the critical unauthenticated memory leak in MongoDB. Includes…

MongoBleed (CVE-2025-14847) Lab & PoC : A complete educational environment to reproduce the critical unauthenticated memory leak in MongoDB. Includes…


A POC on how to exploit CVE-2022-27518

110 offensive security one-liners for authorized testing and CTFs, organized in one markdown notebook by category and kill-chain step. Dual-use…

📦 Make security testing of K8s, Docker, and Containerd easier.

Docker Enumeration, Escalation of Privileges and Container Escapes (DEEPCE)

Peirates - Kubernetes Penetration Testing tool

Legion is an open source, easy-to-use, super-extensible and semi-automated network penetration testing tool that aids in discovery, reconnaissance…

Gorsair gives root access on remote docker containers that expose their APIs

A collection of manifests that will create pods with elevated privileges.

A container analysis and exploitation tool for pentesters and engineers.

PoC for CVE-2019-5736

Cloud Container Attack Tool (CCAT) is a tool for testing security of container environments.

A collection of Windows print spooler exploits containerized with other utilities for practical exploitation.

Proof of concept code for Datadog Security Labs referenced exploits.

PHPMailer < 5.2.18 Remote Code Execution exploit and vulnerable container

SambaCry exploit and vulnerable container (CVE-2017-7494)

Go-based Kubernetes exploitation tool that scans for exposed ports and exploits cluster misconfigurations, including anonymous Kubelet RCE and etcd…