
Intensio-Obfuscator
Obfuscate a python code 2.x and 3.x

Obfuscate a python code 2.x and 3.x

Jenkins RCE Proof-of-Concept: SECURITY-1266 / CVE-2019-1003000 (Script Security), CVE-2019-1003001 (Pipeline: Groovy), CVE-2019-1003002 (Pipeline:…

Comprehensive Java vulnerability lab with vulnerable and fixed code, attack scenarios, source/sink audit notes, and secure coding guidance for…

Python source code auditing and static analysis on a large scale

Scans GitHub Actions CI/CD workflows for security vulnerabilities, indexes findings into a Neo4j graph database, and provides a query library for…

Build and query a graph database representation of source code

Spelling checker action to check spelling in repositories / pull requests / commits

Proof-of-concept for CVE-2023-4863, a heap buffer overflow in WebP image decoding. Demonstrates the code_lengths trigger mechanism discovered by…

A collection of servers which are deliberately vulnerable to learn Pentesting MCP Servers.

Threadless Module Stomping In Rust with some features (In memory of those murdered in the Nova party massacre)

AI-powered assistant for penetration testers that generates payloads, analyzes code, performs reconnaissance, and executes command-line actions to…

OWASP ASST (Automated Software Security Toolkit) | A Novel Open Source Web Security Scanner.

OWASP Certified Secure-Software Developer

This is an intentionally vulnerable smart contract truffle deployment aimed at allowing those interested in smart contract security to exploit a wide…

A JavaScript Obfuscator based on Cryptographic Indistinguishability Obfuscation techniques

A foundational C library for building operationally credible offensive capabilities


Detailed technical write-up and proof-of-concept exploit for CVE-2023-33733, a remote code execution vulnerability in the Reportlab Python library…