
OpenPLC_v3
To reproduce CVE-2021-31630

To reproduce CVE-2021-31630
CVE-2018-6574 POC : golang 'go get' remote command execution during source code build


GiveWP PHP Object Injection exploit


Frontend File Manager Plugin (WordPress) <= 23.6 - Unauthenticated Arbitrary File Deletion to RCE

Security module for php7 and php8 - Killing bugclasses and virtual-patching the rest! https://snuffleupagus.rtfd.io

CAWODOG is a proof-of-concept project demonstrating how to protect Python-based AI models deployed on offline industrial machines. Across three…

Mutation testing on X.509 Certificate Validation IN OpenSSL v.1.1.1h, based on CVE-2021-3450.

A Binary Ninja plugin using backward slicing of variables as a driver for static taint analysis

CVE-2019-17080


Technical dossier on the DPRK-linked PolinRider supply-chain attack, documenting obfuscated JS payload injection, git history manipulation, C2…

The Web Exploit Detector is a Node.js application used to detect possible infections, malicious code and suspicious files in web hosting environments

My experiments in weaponizing Nim (https://nim-lang.org/)

Security module for php7 and php8 - Killing bugclasses and virtual-patching the rest!