
agent-vault
A HTTP credential proxy and vault for AI agents like Claude Code, OpenClaw, Hermes, custom agents + harnesses, and more.

A HTTP credential proxy and vault for AI agents like Claude Code, OpenClaw, Hermes, custom agents + harnesses, and more.

Automated HTTP Request Repeating With Burp Suite

A Burp Suite extension for identifying injection flaws (LFI, RCE, SQLi), authentication/authorization issues, and HTTP 403 access violations. It…

Automated HTTP Request Repeating With Burp Suite

Native C++ access to Active Directory over ADWS, no .NET, no WCF, no HTTP stack.

Lab + writeup for CVE-2026-28699: Gitea OAuth2 scope enforcement bypass via HTTP Basic auth

Tenda N300 Authentication Bypass via Malformed HTTP Request Header

shiro-cve-2020-17523 漏洞的两种绕过姿势分析 以及配套的漏洞环境

Silent;Call — Pre-authentication remote root on Cisco CUCM 15.x (CVSS 10.0)




Semgrep rules that flag header-trust auth bypass patterns (CVE-2025-29927 class). Companion to bk-security.github.io.

演示 Next.js 中的 Middleware 授權繞過漏洞 (CVE-2025-29927) 允許未經授權的用戶存取受保護的資訊。


Auth Bypass PoC for Kiali


SureTriggers <= 1.0.78 - Authorization Bypass Exploit