
text4shell-policy
ClusterImagePolicy demo for cve-2022-42889 text4shell

ClusterImagePolicy demo for cve-2022-42889 text4shell

Detect compliance and security violations across Infrastructure as Code to mitigate risk before provisioning cloud native infrastructure.

🛡️ Open-source and cloud-native Web Application Firewall (WAF)

A collection of manifests that will create pods with elevated privileges.

Read-only AI agent that queries your cloud, code, and runtime infrastructure to surface misconfigurations, leaked secrets, and privilege escalation…

Pentester-focused Docker registry tool to enumerate and pull images


Patch Pulsar Docker images with Log4J 2.17.1 update to mitigate Apache Log4J Security Vulnerabilities including Log4Shell

veinmind-tools 是由长亭科技自研,基于 veinmind-sdk 打造的容器安全工具集

Public OCI-Image (docker image) Security Checker

Exploits CVE-2026-21005 by poisoning Docker Registry V2 Schema 1 manifests via unauthenticated pushes, enabling tag overwrite and supply-chain…

Patched Confluence 7.12.2 (CVE-2021-26084)



nginx 1.15.10 patch against cve-2021-23017 (ingress version)

A critical Remote Code Execution (RCE) vulnerability exists in Coolify's application deployment workflow. This flaw allows a low-privileged member to…

Secure-by-default demo lab showing how container hardening (distroless images, non-root, read-only filesystem, runtime-injected secrets) can…

Issue with AWS SAM CLI (CVE-2025-3047, CVE-2025-3048)