
evilqr
Proof-of-concept to demonstrate dynamic QR swap phishing attacks in practice.

Proof-of-concept to demonstrate dynamic QR swap phishing attacks in practice.

CVE-2025-59501 POC code


CVE-2026-5229: Form Notify Auth Bypass via LINE OAuth Callback (CVSS 9.8)

A simple tool to enumerate users in gitlab

Critical unauthenticated kill chain leading to full RCE in FlowiseAI (CVE-2025-58434 + CVE-2025-59528)

Technical Reference to multiple relay techniques

Pre-launch security checklist for AI-generated apps (Lovable, v0, Bolt, Cursor). 69 checks covering Supabase RLS, exposed keys, and prompt injection.…

Combined PoC for CVE-2025-28434 and CVE-2025-59528


CVE-2025-58434 and CVE-2025-59528 chain POC


Snipe-IT < 8.3.7 Mass Assignment Vulnerability Leading to Privilege Escalation


FlowiseAI CVE-2025-58434 & CVE-2025-59528 exploit PoC, demonstrating unauthenticated ATO via reset token leakage, followed by authenticated RCE.…