
CVE-2026-76071
Original research and PoC for a pre-auth stack buffer overflow via unbounded sscanf scanset in the Netis NC63 ipFilterList handler

Original research and PoC for a pre-auth stack buffer overflow via unbounded sscanf scanset in the Netis NC63 ipFilterList handler

Static reverse-engineering of a GIGABYTE H510M K V2 (`H510MKV2.F3`) BIOS image: full UEFI firmware-volume extraction analysis of the PI-spec SMM Core…

MCP server enabling AI agents to autonomously execute 150+ cybersecurity tools for automated penetration testing, vulnerability discovery, bug bounty…

Autonomous security research framework integrating static analysis, binary analysis, fuzzing, LLM-powered vulnerability validation, exploit…

A collection of my Semgrep rules to facilitate vulnerability research.

DR.CHECKER : A Soundy Vulnerability Detection Tool for Linux Kernel Drivers

Radare2 AI plugin using local or remote LLMs for decompilation, function explanation, vulnerability detection, renaming, and scripted reverse…

IDA Python plugin for fast, location-driven matching of open-source library symbols in binaries, enabling efficient reverse engineering and…

Proof-of-concept exploit and vulnerability disclosure for HiSilicon hi3520d DVR/NVR devices. Demonstrates RCE via web interface, backdoor…

IDA Pro plugin for query based searching within the binary useful mainly for vulnerability research.

Static analysis framework that identifies fuzzable function targets in source code and binaries, generates harness templates, and integrates with…

Automated binary vulnerability analysis tool that decompiles executables via Ghidra, scans pseudo-C code with Semgrep, and validates findings using…

A security-first MCP server that empowers AI agents to perform automated reverse engineering, malware analysis, forensics, vulnerability research,…

Interactive program analysis suite using Code Property Graphs to hunt for bugs in C and C++ code, unifying application-specific and low-level…

Vulnerability research assistant that locates calls to potentially insecure API functions in a binary file.

Vulnerability research assistant that extracts pseudocode from the IDA Hex-Rays decompiler.

REx@Skill - Agentic Reverse Engineering eXecution Skill for binary vulnerability discovery

Exploit for command injection vulnerability found in uhttpd binary from TP-Link Tapo c200 IP camera