
nebulousAD
NebulousAD automated credential auditing tool.

NebulousAD automated credential auditing tool.

Reproducer for CVE-2026-46456 — Apache Camel camel-aws2-sqs inbound message-attribute header injection (Camel control-header injection via…

UnboundID LDAP SDK for Java

Python script to bypass Azure APIM signup when UI is disabled, this is different from the CVE-2025-66390 as it does not require you to setup anything…

Centralized configuration server for distributed systems with HTTP API, encryption/decryption of properties, and support for Git, Vault, JDBC, and…

Proof-of-concept exploit and technical advisory for an unauthenticated member PII disclosure in a WordPress REST API directory plugin, including…

FlowAnalyzer is a tool to help in testing and analyzing OAuth 2.0 Flows, including OpenID Connect (OIDC).

Burp Suite Extension useful to verify OAUTHv2 and OpenID security

The Secure CommsOS™ for mission-critical operations

Java client library for the Kubernetes API, enabling programmatic management of clusters, pods, deployments, and other resources with support for…

CVE-2026-39154, Stored XSS in CometChat JS SDK

The Symfony PHP framework

PatrOwl - Open Source, Smart and Scalable Security Operations Orchestration Platform

A security-hardened fork of Crowdsignal Forms. Patches CVE-2025-69015 (Broken Access Control), modernizes for PHP 8.2+, and enforces strict…

A security-patched fork of the legacy ClickFunnels Classic WordPress plugin. Fixes critical Stored XSS vulnerabilities (CVE-2022-4782) while…

An implementation of a vulnerable MCP server using mcp-go

Checklist of the most important security countermeasures when designing, testing, and releasing your API

The easiest, and most secure way to access and protect all of your infrastructure.