
Aker
SSH bastion gateway with session recording, command extraction, and SIEM-ready logging. Integrates with FreeIPA for identity management and supports…

SSH bastion gateway with session recording, command extraction, and SIEM-ready logging. Integrates with FreeIPA for identity management and supports…

Proof-of-concept exploits for CVE-2026-42167, a SQL injection vulnerability in ProFTPD's mod_sql logging pipeline enabling unauthenticated SQL…

Proof-of-concept exploit for CVE-2026-48710 demonstrating an authentication bypass in Starlette using a crafted Host header in redirect routing.

Lightweight, secure control plane & real-time web dashboard in Crystal for Linux firewalld and NetworkManager host security.

Proof-of-concept demonstrating Host Header Injection leading to SAML authentication bypass in Apache Airflow's AWS Auth Manager, with token theft and…

Exploit for CVE-2022-46169 in Cacti before 1.2.3, bypassing host authorization and achieving remote command execution through poller command…

Proof-of-concept exploit for SQL injection and authentication bypass in Lodging Reservation Management System 1.0, enabling unauthorized admin access…

Read-only PoC for CVE-2026-65400 — macOS Screen Sharing (screensharingd) pre-auth SRP bypass giving root file read. Patched in macOS 26.6.1 / 15.7.9…

PoC for CVE-2026-44848: Portainer missing authorization on Docker plugin endpoints -> host RCE (GHSA-rrmm-9v76-h3p4). Stdlib-only Python.

Detection scanner for CVE-2026-48710 - Host-header auth bypass in Starlette/FastAPI