#1Training labs, hands-on environments, and reproducible challenges for authorized, safe cybersecurity practice.
Kitploit recommended

LazyWeb is a demonstration web application designed to showcase common server-side application vulnerabilities. Each vulnerability is categorized…
Python framework for performing side-channel analysis attacks (e.g., CPA) on public datasets, designed for educational use and hands-on practice in…

CVE-2025-55183 POC

CVE-2026-60121, CVE-2026-61498 - Draft

Lab Environment for CVE-2026-22241

Vulnerable Python Application To Learn Secure Development

Annual small file competition repository with binary golf challenges across themes like polyglots, crashes, self-replication, and downloads,…

A Proof of concept scenario for exploitation of CVE2021-38297 GO WASM buffer-overflow

Intentionally vulnerable Next.js application demonstrating CVE-2025-29927 authentication bypass via middleware WAF evasion. Designed for security…

Analysis, Validation Environment, and POC for CVE-225-55182 Vulnerability.

This repository contains the complete record of my three-year research journey, covering the project from foundational concepts to advanced-level…

YC (S26) | Open Computer History | Record your screen continuously locally and provide context to your agents (Claude, Codex, Openclaw, Hermes,…

Cloud pentesting framework deploying vulnerable-by-demand AWS resources with quest-based scenarios to teach practical penetration testing and…

Docker setup for CVE-2026-24061

CVE-2025-32433 PoC – SSH Protocol Python-based PoC for controlled lab testing of SSH message handling, channel operations, and pre-auth interactions.…

Built a custom Virtual Machine, running Ubuntu 18.04.1 and Webmin 1.810. Using CVE-2019-15107 to exploit a backdoor in the Linux machine


A POC for CVE-2024-32002 demonstrating arbitrary write into the .git directory.