
CDK
📦 Make security testing of K8s, Docker, and Containerd easier.

📦 Make security testing of K8s, Docker, and Containerd easier.

This is a container built for demonstration purposes that has a version of the sudo command which is vulnerable to CVE-2019-14287

Docker Enumeration, Escalation of Privileges and Container Escapes (DEEPCE)

CVE-2022-0847 used to achieve container escape 利用CVE-2022-0847 (Dirty Pipe) 实现容器逃逸

Security for the modern age of AI: defend against bad AI agents and malicious npm packages

Sudo <= 1.8.14 Local Privilege Escalation and vulnerable container

PoC for CVE-2021-1056, related to GPU Container Security

Sudo 1.6.x <= 1.6.9p21 and 1.7.x <= 1.7.2p4 Local Privilege Escalation and vulnerable container

A script to check if a container environment is vulnerable to container escapes via CVE-2022-0492

CVE-2024-0132 – Fully Weaponized NVIDIA Container Toolkit Exploit

Live cryptojacking toolkit with CVE-2026-31431 LPE exploit, container escape, kernel rootkit, and XMRig Monero miner, captured from real attacks for…

PoC for Docker `docker cp` arbitrary file write, exploiting symlink and tar extraction flaws to overwrite host binaries or launch agents for…

CVE-2025-23266 – Fully Weaponized NVIDIA Container Toolkit Exploit

This exploit offers an in-depth look at the CVE-2021-41091 security vulnerability and provides a step-by-step guide on how to utilize the exploit…

A self-hosted vulnerable Next.js environment running on Docker for simulating CVE-2025-55182. Built for educational security research and CTF…

In this project, we found a recent attack through the malicious container and implemented a security mechanism to stop it.

veinmind-tools 是由长亭科技自研,基于 veinmind-sdk 打造的容器安全工具集

A collection of manifests that will create pods with elevated privileges.