Escaping Docker container

capsh to see which capacities we have

capsh --print shows that I have cap_sys_module

with this privilege we can insert new kernel modules we crafted a kernel module that gives us a reverse shell.. https://book.hacktricks.xyz/linux-unix/privilege-escalation/linux-capabilities#cap_sys_module