
kanidm
Self-hosted identity management platform providing WebAuthn passkeys, OAuth2/OIDC SSO, SSH key distribution, RADIUS and LDAP integration for modern…

Self-hosted identity management platform providing WebAuthn passkeys, OAuth2/OIDC SSO, SSH key distribution, RADIUS and LDAP integration for modern…

A JWT based API for managing users and issuing JWT tokens

The most comprehensive authentication framework

Certificate authority issuing short-lived code-signing certificates tied to OpenID Connect identities, enabling verifiable software supply chain…

Security control plane for LLM agents: allowlists, owner kill switch, PIN sessions, rate limits, prompt-injection detection, and output scrubbing to…

cPanel/WHM Authentication Bypass (Zero-Day Vulnerability)

IDOR + Stored XSS via Broken Object-Level Authorization in JoomGallery

Proof-of-concept for CVE-2026-18315 (TrueBooker WordPress Plugin): Unauthenticated Authorization Bypass Through User-Controlled Key to Account…

Read-only PoC for CVE-2026-65400 — macOS Screen Sharing (screensharingd) pre-auth SRP bypass giving root file read. Patched in macOS 26.6.1 / 15.7.9…

Custom Content Types and Fields plugin for WordPress

Exploit PoC for WordPress Burst Statistics authentication bypass allowing unauthenticated admin impersonation via crafted Authorization header.

PHP framework for building web applications and console tools with reusable components, security best practices, and a large ecosystem of bundles.

Workaround guide for CVE-2022-41923 privilege management vulnerability in Grails Spring Security Core plugin, providing patched filter definitions…

Open-source Matrix homeserver enabling secure, federated real-time communication with end-to-end encryption, user authentication, and identity…

PowerShell script to enumerate Azure Active Directory access permissions, including role assignments, service principals, and privileged access…

Identity services for traditional infrastructure, applications and containers.

Burp plugin which supports in finding privilege escalation vulnerabilities

Repository contains description for CVE-2023-35794 discovered by Dodge Industrial Team for Dodge OPTIFY platfrom.