
OpenShell
Sandboxed runtime for autonomous AI agents with declarative YAML policies enforcing filesystem, network, and process constraints, plus endpoint-bound…

Sandboxed runtime for autonomous AI agents with declarative YAML policies enforcing filesystem, network, and process constraints, plus endpoint-bound…

Custom Content Types and Fields plugin for WordPress

Runtime security gateway for AI agents: cryptographically attests tool calls, enforces policies, sandboxes execution, and logs tamper-evident audit…

Signtool for expired certificates

CVE-2026-43813: CloudAttestation enforceEnvironment bypass

Just poc for CVE 2024-54085

CVE Reproduction: cve-2026-41940-cpanel_authbypass_reproduction

Execution-Layer Security (ELS) for AI agents — policy-enforced shell with audit.

DLL Injection tool to unlock guest VMs

Enterprise Security API library providing security controls for Java web applications, including authentication, access control, input validation,…

OWASP Enterprise Security API library providing security controls for Java web applications, including authentication, access control, input…

Jenkins plugin providing script approval workflows and Groovy sandboxing to enforce secure script execution, with ACL-aware permission checks and…

.Net Assembly loader for the [CVE-2021-42287 - CVE-2021-42278] Scanner & Exploit noPac

Detailed technical analysis of CVE-2026-47777, a high-severity authorization bypass in Mastodon's Featured Collections federation pipeline, including…

Bypass for Symantec Endpoint Protection's Client User Interface Password

CVE-2024-55215

credential isolation for AI agents. Agents never see real API keys - structural guarantee, not policy.

A reverse proxy like nginx, built on pingora, simple and efficient.