Coder Social home page Coder Social logo

Hey all. 👋 Container Security newb here.

Here are the vulnerabilities i've found:

status discovered project item
[DONE] 2021-02-23 bitnami/laravel CVE-2021-21979: APP_KEY is fixed in docker image bitnami/laravel
[DONE] 2021-04-20 meshery CVE-2021-31856: A Sql Injection in Meshery
[DONE] 2021-04-30 docker CVE-2021-41089: docker cp allows unexpected chmod of host files
[DONE] 2021-05-26 kernel/cgroups CVE-2022-0492 (co-author)
[DISCOVERED] 2021-07-14 runc host infomation disclosure
[REPORTED] 2021-08-24 docker docker *** dos
[DISCOVERED] 2022-06-17 runc runc *** escape
[DONE] 2022-07-29 runc CVE-2023-28642: AppArmor/SELinux bypass with symlinked /proc
[DISCOVERED] 2022-08-04 runc runc host infomation disclosure
[DISCOVERED] 2023-02-14 docker docker host arbitrary file write
[DISCOVERED] 2023-03-02 docker docker host arbitrary file delete
[DONE] 2023-03-10 apport-cli CVE-2023-1326 (co-author)
[DISCOVERED] 2023-03-30 runc *** escape, any runtime
[DISCOVERED] 2023-04-07 runc *** escape, containerd only
[DISCOVERED] 2023-05-10 kata escape from ctr to guest vm

Here are some of my repositories i want to introduce to you:

updated at 2023-04-23


Top Langs

Lei Wang's Projects

todo icon todo

A simple command line todo list manager which can be as powerful as you want it do be.

vulapps icon vulapps

快速搭建各种漏洞环境(Various vulnerability environment)

wechatuserdb icon wechatuserdb

GetWeChat DBPassword&&UserInfo(获取PC数据库密码以及相关微信用户信息支持多系统数据库解密)

wesng icon wesng

Windows Exploit Suggester - Next Generation

windows-exploit-suggester icon windows-exploit-suggester

This tool compares a targets patch levels against the Microsoft vulnerability database in order to detect potential missing patches on the target. It also notifies the user if there are public exploits and Metasploit modules available for the missing bulletins.

write-ups icon write-ups

:blue_book: Writeups for different CTF challenges

write-ups-2016 icon write-ups-2016

Wiki-like CTF write-ups repository, maintained by the community. 2016

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.