#1Cybersecurity research, materials, labs, and learning paths, including CTFs and curated educational resources.
Kitploit recommended

Universal exploitation tool for CVE-2025-33073 targeting Windows Domain Controllers with DNSAdmins privileges and WinRM enabled.
Learning FreeBSD Kernel Hacking - Exercises

Free XP on bug bounty, vulnerability scanning by wrapping well maintained tools, to perform automated tests. Alongside AI agents for binary analysis,…

Deploys realistic virtual SCADA/ICS testbeds with IEC 60870-5-104 and OPC-UA nodes, enabling attack simulations, legitimate packet generation, and…

Security advisories published by Enable Security

COM Windows Persistence Technique

A deliberately vulnerable mobile banking application designed for practicing mobile security testing. Features common vulnerabilities found in…

Java-based exploit for CVE-2024-20931 bypassing CVE-2023-21839 patch in Oracle WebLogic. Uses JNDI injection via ForeignOpaqueReference to achieve…

Dracula OS is a Linux operating system meticulously designed for OSINT (Open Source Intelligence) and Cyber Intelligence missions.


fastjson-1.2.47

Rules Shared by the Community from 100 Days of YARA 2023

Script to install prerequisites for deploying GOAD on Ubuntu Linux 22.04

Simple PoC Python agent to showcase Havoc C2's custom agent interface. Not operationally safe or stable. Released with accompanying blog post as a…

Staged static taint analysis framework for GitHub Actions workflows. Detects code injection vulnerabilities using taint-tracking and an impact…

Exploit for Laravel Remote Code Execution with API_KEY (CVE-2018-15133)

Research material and Proof-of-Concepts for Aleph Research Findings

POC of CVE-2018-9995 written in Rust.