
CVE-2022-0492-Docker-Breakout-Checker-and-PoC
Docker Breakout Checker and PoC via CAP_SYS_ADMIN and via user namespaces (CVE-2022-0492)

Docker Breakout Checker and PoC via CAP_SYS_ADMIN and via user namespaces (CVE-2022-0492)

Exploit for CVE-2021-29447, an XXE vulnerability in WordPress 5.7.0 and earlier. Generates malicious WAV payloads to read arbitrary server files via…

reproducing an old istio bug

CyberResponders is a terminal-based cybersecurity training game that enables players to respond to different cyber incident scenarios. Here, they…

CVE-2025-49844 (RediShell)

Hands-on CI/CD pipeline security workshop with Terraform lab, AWS exploitation, Kubernetes escape, and artifact backdooring exercises for offensive…


Educational lab environment with a proof-of-concept exploit for CVE-2025-49844 (RediShell), a critical use-after-free in Redis Lua interpreter,…

Educational lab environment demonstrating CVE-2025-49844 (RediShell) in Redis. Includes Docker setup, exploit PoC script, and security…

Collection of steganography tools - helps with CTF challenges

Vulnerable docker images for CVE-2021-41773

Curated collection of CVE demonstrations with fix recommendations for hands-on vulnerability analysis and educational exploitation practice.

A POC for the Apache Livy Unauthorized File Access Vunerability

A POC for Apache Livy Path Traversal Whitelist Bypass Vulnerability

Docker-based vulnerable lab for CVE-2021-41773 Apache path traversal, providing PoC configurations for file read and remote code execution in a…

This repo contains RCE exploit for Pterodactyl htb machine

SNP Assignment 1 Report - Linux box exploitation ( Vulnerability CVE-2014-0038)

It is an input sanitization flaw caused by an encoding mismatch, allowing crafted input to bypass filters. If a server is vulnerable, an attacker can…