
DakshSCRA
Framework-aware static code analysis tool for automated source code review with platform-specific rules, taint analysis, effort estimation, and…

Framework-aware static code analysis tool for automated source code review with platform-specific rules, taint analysis, effort estimation, and…

Simple Anti-cheat library for applications that use C++ on windows. #PastedProtection

My experiments in weaponizing Nim (https://nim-lang.org/)

A lightweight dynamic instrumentation library

Open-source secret scanner in Rust

Horusec is an open source tool that improves identification of vulnerabilities in your project with just one command.

Translates Dalvik bytecode (DEX/APK) to equivalent Java bytecode, enabling Java analysis tools to process Android applications with high correctness…

Demonstrates a PHP object injection attack targeting CVE-2023-41892, including exploitation techniques and mitigation strategies for securing PHP…

Fuzzing Framework for Modules in Apache HTTPD Server

A tool for finding vulnerable libwebp(CVE-2023-4863)

Technical analysis and proof-of-concept for CVE-2024-48990, a privilege escalation vulnerability in needrestart allowing local attackers to execute…

Proof-of-concept exploit for CVE-2025-55182, demonstrating remote code execution via prototype chain vulnerability in React Server Components.…

Java SDK for building analytics pipelines that process and enrich unstructured text data with annotations, type systems, and modular analysis engines.

All-in-one macOS binary analysis: Mach-O parsing, ARM64 disassembly, code signatures, and debugging.

CVE-2020-26259: XStream is vulnerable to an Arbitrary File Deletion on the local host when unmarshalling as long as the executing process has…

CVE-2020-26259 &&XStream Arbitrary File Delete

Details about the Blind RCE issue(SPX-GC) in SPX-GC

Security Advisory: Unchecked Room Lookup Leads to Server Crash (Let's Chat)