
flar
Lightweight CLI tool that runs AI coding agents inside isolated Bubblewrap sandboxes with strict filesystem, network, and credential isolation to…

Lightweight CLI tool that runs AI coding agents inside isolated Bubblewrap sandboxes with strict filesystem, network, and credential isolation to…

Hands-on capture-the-flag lab for the OWASP Kubernetes Top 10 (2025). Exploit 11 real-world cluster weaknesses, capture flags, then apply fixes and…

deb/rpm repository for Trivy

CVE-2026-33634 (CVSS 9.4) — The most impactful CI/CD supply chain attack of 2026 so far.

[EXPERIMENTAL] Kubernetes Operator for Image Assurance

Static analysis tool that detects malicious dependencies in CI/CD pipelines using pattern matching and AST analysis, with a traffic-light risk…

Dockerfile and Kubernetes manifests for reproduce CVE-2024-3094

Find binary files not installed through package manager

CVE-2022-46463 harbor公开镜像全自动下载脚本

A Public Package Scanner for The Community


K8S and Docker Vulnerability Check for CVE-2024-3094

GitHub Actions workflow sandbox for CVE-2026-45132 reproduction

Shell script to detect TanStack npm supply chain attack indicators (CVE-2026-45321 / GHSA-g7cv-rxg3-hmpx)

Isolated regression and security-control lab for CVE-2026-59891 in @sigstore/oci


Professional vulnerability assessment report for Helm plugin path traversal risk, including technical analysis, impact, remediation, and mitigation…