黑客、渗透测试和网络安全工具,武装您的安全武器库!
针对CVE-2022-25365的概念验证漏洞利用程序,这是一种通过命名管道模拟实现Docker Desktop for Windows权限提升的漏洞。
发现我们社区最常用的工具。
探索所有工具
浏览我们的工具集合
参考: https://www.cyberark.com/resources/threat-research-blog/breaking-docker-named-pipes-systematically-docker-desktop-privilege-escalation-part-1
poc.py 由 followboy1999 编写 createsymlink.exe 由 James Forshaw 编写 junction64.exe 由 Mark Russinovich 编写 ualapi.dll 来自 https://github.com/ionescu007/faxhell