
Hybrid Submit
A script that automatically submits files to Hybrid Analysis (API)

A script that automatically submits files to Hybrid Analysis (API)
Open source tooling to stop ICS phishing (malicious calendar invites)

PoC for CVE-2026-49230: Apache APISIX jwe-decrypt authentication bypass (missing AES-GCM tag validation, CWE-354, CVSS 9.1)

Minimal Python PoC for CVE-2026-40179: injects a malicious metric name via unauthenticated Prometheus remote_write to trigger stored XSS in the web…

Verdict-as-a-Service SDKs: Analyze files for malicious content

teler-waf is a Go HTTP middleware that protects local web services from OWASP Top 10 threats, known vulnerabilities, malicious actors, botnets,…

Self-hosted WAF and reverse proxy that filters malicious HTTP traffic, blocks SQL injection, XSS, and bot attacks, with rate limiting and dynamic…

Metlo is an open-source API security platform.
