
SafeLine
Self-hosted WAF and reverse proxy that filters malicious HTTP traffic, blocks SQL injection, XSS, and bot attacks, with rate limiting and dynamic…

Self-hosted WAF and reverse proxy that filters malicious HTTP traffic, blocks SQL injection, XSS, and bot attacks, with rate limiting and dynamic…

A free, secure and open source app for Android to manage your 2-step verification tokens.

A reverse proxy like nginx, built on pingora, simple and efficient.

OWASP iGoat - A Learning Tool for iOS App Pentesting and Security by Swaroop Yermalkar

A deliberately vulnerable mobile banking application designed for practicing mobile security testing. Features common vulnerabilities found in…

Local-first encrypted password vault for Android with Master Password access, Recovery Key support, Autofill integration, and portable encrypted…

CVE-2025-5154: Proof-of-concept for unencrypted local storage of authentication tokens, PII, and KYC data in the PhonePe Android app, enabling…

CVE-2025-14611 CentreStack and Triofox full Poc/Exploit

True P2P Email on top of Yggdrasil Network for Android

A "plugin" for Android Java to allow asking the user about SSL certificates

Proof-of-concept exploit for CVE-2026-0073, an Android ADB authentication bypass allowing network attackers to connect to devices with ADB over TCP…

An intentionally vulnerable Android Application to demonstrate various vulnerabilities that airses in Android Components.

PoC for CVE-2026-0073, an Android ADB authentication bypass enabling network attackers to connect to previously paired devices over wireless…

Frida-based proof-of-concept demonstrating authentication bypass in Telegram Android by hooking SharedConfig.checkPasscode to always return true,…

Modlishka. Reverse Proxy.

Linux libfprint driver for the Focal-systems FT9201 (2808:93a9) USB fingerprint reader — runs FocalTech's own Windows matching engine natively on…

Security research PoC for CVE-2026-0073: ADB authentication bypass verification
