github brompwnie/botb 1.0
Initial Release

latest releases: 1.8.0, 1.7.0, 1.6.0...
4 years ago

This is the initial release for BOtB and provides the following:

  • Find and Identify UNIX Domain Sockets
  • Identify UNIX domain sockets which support HTTP
  • Find and identify the Docker Daemon on UNIX domain sockets or on an interface
  • Analyze and identify sensitive strings in ENV and process in the ProcFS i.e /Proc/{pid}/Environ
  • Identify metadata services endpoints i.e http://169.254.169.254
  • Perform a container breakout via exposed Docker daemons
  • Perform a container breakout via CVE-2019-5736
  • Hijack host binaries with a custom payload
  • Perform actions in CI/CD mode and only return exit codes > 0

Don't miss a new botb release

NewReleases is sending notifications on new releases.