
ctf-cve-2019-11043
Intentionally vulnerable PHP app with Nginx/PHP-FPM setup for reproducing CVE-2019-11043, including Docker and Kubernetes deployment,…

Intentionally vulnerable PHP app with Nginx/PHP-FPM setup for reproducing CVE-2019-11043, including Docker and Kubernetes deployment,…

A collection of scripts, and tips and tricks for hacking k8s clusters and containers.

Drop a single binary into a compromised Kubernetes pod and instantly map every realistic attack path to cluster-admin, node escape, secret theft,…

Linux privilege escalation via LXD

eBPF-based stealth container that hides processes, sockets, eBPF objects, and audit logs from system monitoring tools, enabling covert…

Post-exploit a compromised etcd, gain persistence and remote shell to nodes.

This is a PoC exploit for CVE-2020-8559 Kubernetes Vulnerability

PoC exploit for insecure permissions in Contour v1.28.3 that retrieves a Kubernetes service account token and accesses the cluster API, demonstrating…

Trained to Escalate: Forensic Analysis and Local Replication of RLHF-Induced Privilege Escalation in AI Agents (CVE-2026-65616)

CVE-2026-31431-killed page-cache exploit — code exec into containers sharing the same image layer

Windows File Explorer Zero Click NTLMv2-SSP Hash Disclosure