Offensive Container Escape
Offensive Container Escape is an agent skill (a SKILL.md file) from SnailSploit/Claude-Red. Container escape and breakout techniques targeting Docker, containerd, and Podman runtimes. It works with Claude Code and has 7,321 GitHub stars across a repository of 4 listed skills.
github.com/SnailSploit/Claude-Red/Skills/container/offensive-container-escape (opens in a new tab)
- Multi-skill repo
- DevOps & cloud
- Actively maintained
Add this skill
Claude
Claude Code loads skills from ~/.claude/skills/ (all projects) or .claude/skills/ (one project):
git clone --depth 1 https://github.com/SnailSploit/Claude-Red.git
cp -r Claude-Red/Skills/container/offensive-container-escape ~/.claude/skills/offensive-container-escape # personal, or .claude/skills in a projectIn the Claude apps, zip the offensive-container-escape folder and upload it under Customize > Skills > + > Upload a skill (code execution must be on).
ChatGPT / Codex
Codex reads skills from .agents/skills/ in a repo or ~/.agents/skills/ for every project:
git clone --depth 1 https://github.com/SnailSploit/Claude-Red.git
cp -r Claude-Red/Skills/container/offensive-container-escape .agents/skills/offensive-container-escape # repo; ~/.agents/skills for all projectsStandalone skills also load in the ChatGPT desktop app.
Cursor
Cursor loads skills from .cursor/skills/ (or ~/.cursor/skills/) and also reads .claude/skills/:
git clone --depth 1 https://github.com/SnailSploit/Claude-Red.git
cp -r Claude-Red/Skills/container/offensive-container-escape .cursor/skills/offensive-container-escape # project; ~/.cursor/skills for all projectsSource (checked Oct 7, 2026): code.claude.com/docs/en/skills (opens in a new tab), support.claude.com/en/articles/12512180-using-skills-in-claude (opens in a new tab), learn.chatgpt.com/docs/build-skills (opens in a new tab), cursor.com/docs/context/skills (opens in a new tab)
What this skill does
Container escape and breakout techniques targeting Docker, containerd, and Podman runtimes. Covers privileged container breakout via host filesystem mount and nsenter, Docker socket abuse through /var/run/docker.sock, Linux capability exploitation including CAPSYSADMIN, CAPSYSPTRACE, and CAPNETADMIN, cgroup v1 notifyonrelease escape, runc CVEs such as CVE-2019-5736 and CVE-2024-21626 Leaky Vessels, kernel exploits from within containers, and Dockerfile misconfigurations like --privileged and…
When it triggers
- Use this skill when the engagement scope includes container breakout, Docker escape, container privilege escalation, host access from container, or when you land inside a containerized environment and need to reach the underlying host.
More skills in SnailSploit/Claude-Red
4 skills are listed from this repository.
Similar skills
More devops & cloud skills
Caveman Setup
JuliusBrussee/caveman
Wire a repository through the Caveman Cloud gateway so every LLM request is measured, with no behavior change.
DevOps & cloudGoObservability And Instrumentation
addyosmani/agent-skills
Instruments code so production behavior is visible and diagnosable.
DevOps & cloudJavaScriptShipping And Launch
addyosmani/agent-skills
Prepares production launches. Use when preparing to deploy to production, or when asking what needs to be in place before shipping.
DevOps & cloudJavaScriptRuview Applications
ruvnet/RuView
Run RuView sensing applications — presence/occupancy, breathing & heart rate, activity & fall detection, 17-keypoint pose estimation (WiFlow), sleep monitoring & apnea screening, environment…
DevOps & cloudRustRuview Mmwave
ruvnet/RuView
Set up and run RuView mmWave / FMCW radar sensing — ESP32-C6 + Seeed MR60BHA2 (60 GHz, heart rate / breathing rate / presence) and HLK-LD2410 (24 GHz, presence + distance), plus mmWave↔WiFi-CSI…
DevOps & cloudRustAgentcore
vercel-labs/agent-browser
Run agent-browser on AWS Bedrock AgentCore cloud browsers.
OfficialDevOps & cloudRust
What is the Offensive Container Escape skill?
Offensive Container Escape is an agent skill (a SKILL.md file) from SnailSploit/Claude-Red. Container escape and breakout techniques targeting Docker, containerd, and Podman runtimes. It works with Claude Code and has 7,321 GitHub stars across a repository of 4 listed skills. Its SKILL.md lives at github.com/SnailSploit/Claude-Red/Skills/container/offensive-container-escape.
How do I install the Offensive Container Escape skill?
Copy the offensive-container-escape folder (the one containing SKILL.md) into ~/.claude/skills/ for Claude Code, .agents/skills/ for Codex or .cursor/skills/ for Cursor. The agent picks it up automatically when a task matches its description.
Is the Offensive Container Escape skill free?
Yes. The repository is open source under the MIT license.
Is Offensive Container Escape maintained?
The repository's most recent commit was on Sep 19, 2026. Its latest release is v0.3.0. appsgit only lists skills from repositories with a commit in the last six months.