
check-spelling
Spelling checker action to check spelling in repositories / pull requests / commits

Spelling checker action to check spelling in repositories / pull requests / commits

Proof-of-concept for CVE-2023-4863, a heap buffer overflow in WebP image decoding. Demonstrates the code_lengths trigger mechanism discovered by…

A collection of servers which are deliberately vulnerable to learn Pentesting MCP Servers.

Threadless Module Stomping In Rust with some features (In memory of those murdered in the Nova party massacre)

AI-powered assistant for penetration testers that generates payloads, analyzes code, performs reconnaissance, and executes command-line actions to…

Checker for Lifetimes and other Refinement types

OWASP ASST (Automated Software Security Toolkit) | A Novel Open Source Web Security Scanner.

Kurukshetra - A framework for teaching secure coding by means of interactive problem solving.

OWASP Certified Secure-Software Developer

This is an intentionally vulnerable smart contract truffle deployment aimed at allowing those interested in smart contract security to exploit a wide…

A foundational C library for building operationally credible offensive capabilities


Detailed technical write-up and proof-of-concept exploit for CVE-2023-33733, a remote code execution vulnerability in the Reportlab Python library…


Pre-auth RCE in React Server Components versions 19.0.0, 19.1.0, 19.1.1, and 19.2.0.

Whitepaper introducing Error-Based and Boolean Error-Based Blind techniques for SSTI and Code Injection, with universal payloads for six programming…

Just a normal flask web app to understand win32api with code snippets and references.