Skip to content
KitploitKITPLOIT
도구익스플로잇블로그
Log in
제출
도구익스플로잇블로그
제출

해킹, 침투 테스트 및 사이버 보안 도구를 당신의 보안 무기고에!

Kitploit은 해킹, 사이버 보안 및 침투 테스트 도구 디렉토리입니다. 최신 프로젝트 업데이트를 발견하여 취약점을 찾고, 시스템을 분석하고, 테스트를 자동화하고, 보안을 강화하세요.

피드문의개인정보© 2026 Kitploit

도구 디렉토리

카테고리

모든 카테고리 보기
Loading categories
Container_escape — Container escape proof-of-concept exploits for CVE-2026-80521 and CVE-2026-52910, with a disposable QEMU/Ubuntu VM harness for safe PoC execution. | Kitploit
도구/GitHubGitHub/markakd/container_escape
Container SecurityVulnerability AnalysisExploitationSecurity VirtualizationPenetration TestingPapers & ResearchContainer Escape
GitHubmarkakd/container_escape

Container_escape

Container escape proof-of-concept exploits for CVE-2026-80521 and CVE-2026-52910, with a disposable QEMU/Ubuntu VM harness for safe PoC execution.

저장소 보기
4397215일 전아직 검토되지 않음

인기

모두 보기 →

커뮤니티에서 가장 많이 사용되는 도구를 찾아보세요.

모든 도구 탐색

도구 컬렉션을 둘러보세요

모든 도구 보기 →
공유
요청한 언어로 콘텐츠를 사용할 수 없습니다. 영어 버전을 표시합니다.

Disposable Ubuntu container VM

This directory builds and runs an Ubuntu Docker container inside a disposable Ubuntu QEMU guest. PoCs are copied into the guest and are never executed by the host scripts.

Host dependencies

  • Bash
  • QEMU x86-64 and qemu-img
  • curl
  • OpenSSH client tools
  • xorriso
  • socat only when VM_PAYLOAD_CONSOLE=1 is used

KVM is used when available; otherwise QEMU falls back to TCG.

Build a golden image

UBUNTU_VERSION=26.04 \
VM_EXPECTED_KERNEL=7.0.0-31-generic \
./vm/build_image.sh

The builder downloads the selected Ubuntu release cloud image, validates it against Ubuntu's published SHA256SUMS, installs package updates and Docker, pulls the matching Ubuntu container image, and writes vm/ubuntu-<version>.qcow2.

The default URLs are pinned to the latest official release images available on September 16, 2026:

  • Ubuntu 24.04: release serial 20260911
  • Ubuntu 26.04: release serial 20260823

Set UBUNTU_RELEASE_URL, UBUNTU_IMAGE_URL, or UBUNTU_SUMS_URL to use another release.

The generated qcow2 image and SSH key are local artifacts ignored by Git. The private key remains mode 0600.

Run a binary

UBUNTU_VERSION=26.04 \
VM_EXPECTED_KERNEL=7.0.0-31-generic \
./vm/run_container.sh ./path/to/binary [arguments...]

Each run creates a temporary qcow2 overlay, boots the guest, copies the binary over SSH, and launches it in a fresh container with networking disabled. Arguments, standard streams, and the exit status are forwarded.

Run without a binary to open an interactive shell in a fresh container:

./vm/run_container.sh

Use --shell with a binary to copy it into the guest and mount it at /payload without executing it:

./vm/run_container.sh --shell ./path/to/binary

Useful overrides:

VM_CPUS=4 VM_MEMORY_MB=4096 ./vm/run_container.sh ./binary
VM_SSH_PORT=2223 ./vm/run_container.sh ./binary
KEEP_VM_RUN_DIR=1 ./vm/run_container.sh ./binary

KEEP_VM_RUN_DIR=1 retains the overlay and logs under /tmp/ubuntu-container.*. Each invocation performs one VM boot and one payload attempt. Set VM_PAYLOAD_CONSOLE=1 for a payload that explicitly uses the guest's second serial port.

도구 다운로드