Open Container Registry Survey

I got the chance to get access to a list of open container registries. I took this list as an input and downloaded all images, extracted and verified found secrets and performed some statistics on the data. This article describes my approach and summarizes the results. ...

December 11, 2024 · Jan Harrie

Pentesting Cloud Sandboxes in the wild

Matthias and I talked about cloud sandboxes on virtual BSides Munich 2020. This blogpost summarizes the content of the talk. ...

August 23, 2020 · Jan Harrie

Pentesting Cloud Sandboxes in the wild

Matthias Luft & Jan Harrie, Bsides Munich, Munich/Virtual, Germany ...

August 1, 2020 · Jan Harrie

Container Breakouts – Part 3: Docker Socket

This post is part of a series and shows container breakout techniques that can be performed if a container is started with a mounted Docker socket inside the container. ...

July 30, 2020 · Jan Harrie

Container Breakouts – Part 2: Privileged Container

This post is part of a series and shows container breakout techniques that can be performed if a container is started privileged. ...

July 21, 2020 · Jan Harrie