
CDK
📦 Make security testing of K8s, Docker, and Containerd easier.

📦 Make security testing of K8s, Docker, and Containerd easier.

A container analysis and exploitation tool for pentesters and engineers.

eBPF-based stealth container that hides processes, sockets, eBPF objects, and audit logs from system monitoring tools, enabling covert…

Kubesploit is a cross-platform post-exploitation HTTP/2 Command & Control server and agent written in Golang, focused on containerized environments.

Red Team K8S Adversary Emulation Based on kubectl

Drop a single binary into a compromised Kubernetes pod and instantly map every realistic attack path to cluster-admin, node escape, secret theft,…

Peirates - Kubernetes Penetration Testing tool

k0otkit is a universal post-penetration technique which could be used in penetrations against Kubernetes clusters.

A collection of scripts, and tips and tricks for hacking k8s clusters and containers.

Linux privilege escalation via LXD

This is a PoC exploit for CVE-2020-8559 Kubernetes Vulnerability

Post-exploit a compromised etcd, gain persistence and remote shell to nodes.



Customizable Linux Persistence Tool for Security Research and Detection Engineering.

Master the art of cloud exploitation. A specialized resource for offensive security researchers and red teamers focused on weaponizing…

CVE-2026-31413: BPF verifier soundness bug - container escape

110 offensive security one-liners for authorized testing and CTFs, organized in one markdown notebook by category and kill-chain step. Dual-use…