CDK

Penetration toolkit

A container penetration toolkit designed to simplify exploitation in various containers without relying on an operating system.

📦 Make security testing of K8s, Docker, and Containerd easier.

GitHub

4k stars
69 watching
548 forks
Language: Go
last commit: almost 2 years ago
Linked from 2 awesome lists

blackhatcloud-nativecloud-native-securitycontainercontainer-escapecontainer-securitydockerexploitshacktoolshitbk8sk8s-penetration-toolkitkernel-exploitationkuberneteskubernetes-securitylinuxpenetrationpenetration-testing-toolsprivilege-escalationvulnerabilities

Backlinks from these awesome lists:

Related projects:

RepositoryDescriptionStars
dominicbreuker/stego-toolkitA collection of steganography tools for solving CTF challenges2,425
containers/bubblewrapSandboxing tool to provide isolation and security for unprivileged users4,010
docker/docker-bench-securityAutomates security assessments of Docker container hosts and containers against best-practices9,195
teamssix/container-escape-checkDetects potential vulnerabilities in Docker containers by checking for common escape methods560
rhinosecuritylabs/ccatA tool designed to test the security of container environments by simulating various attacks and vulnerabilities.595
stealthcopter/deepceA tool for discovering and exploiting vulnerabilities in Docker containers using a combination of enumeration and exploitation techniques.1,220
deepfence/secretscannerA tool that scans container images and file systems for sensitive data such as passwords and keys.3,146
liamg/traitorA tool for automatically exploiting vulnerabilities to gain elevated privileges on Linux systems6,735
snyk/cliA command-line tool that scans and monitors software development projects for security vulnerabilities.4,979
anchore/grypeA tool for detecting vulnerabilities in container images and filesystems8,970
owasp/nettackerAutomated tool for identifying vulnerabilities and gathering information about network services and systems.3,700
linuxserver/docker-swagAn all-in-one web application gateway with Nginx, PHP, and security features2,941
gitleaks/gitleaksDetects sensitive information in version control systems and source code files18,165
aquasecurity/trivyA comprehensive security scanner that identifies vulnerabilities and misconfigurations in various targets such as containers, code repositories, and infrastructure24,010
sleuthkit/sleuthkitA collection of command line tools for analyzing digital evidence from various file systems and disk images.2,648