
MongoBleed-exploit
MongoBleed (CVE-2025-14847) Lab & PoC : A complete educational environment to reproduce the critical unauthenticated memory leak in MongoDB. Includes…

MongoBleed (CVE-2025-14847) Lab & PoC : A complete educational environment to reproduce the critical unauthenticated memory leak in MongoDB. Includes…

Intentionally vulnerable Kubernetes cluster environment for hands-on security training. Includes 22+ scenarios covering container escape, RBAC…

快速搭建各种漏洞环境(Various vulnerability environment)

Awesome free cloud native security learning labs. Includes CTF, self-hosted workshops, guided vulnerability labs, and research labs.

Vulnerable app with examples showing how to not use secrets

Metarget is a framework providing automatic constructions of vulnerable infrastructures.

Kubernetes Security Training Platform - focusing on security mitigation

A Microservices-based framework for the study of Network Security and Penetration Test techniques

PHPMailer < 5.2.18 Remote Code Execution exploit and vulnerable container

This page is a result of the ongoing hands-on research around advanced Linux attacks, detection and forensics techniques and tools.

Shellshock exploit + vulnerable environment

CVE-2021-41773 playground

ProFTPd 1.3.5 - (mod_copy) Remote Command Execution exploit and vulnerable container

Docker-based sandbox for coding agents with isolated environments, preinstalled agent tooling, service control, and workspace bootstrap for secure…

DEFCON 30 Mainframe buffer overlow workshop container


A lightweight, multi-layer Linux sandbox combining namespaces, pivot_root, seccomp-bpf, capability dropping, and an evidence-based verdict engine…

OpenSSH remote DOS exploit and vulnerable container