
OffensiveDLR
Toolbox containing research notes & PoC code for weaponizing .NET's DLR

Toolbox containing research notes & PoC code for weaponizing .NET's DLR

A Solution For Cross-Platform Obfuscated Commands Detection presented on CIS2019 China. 动静态Bash/CMD/PowerShell命令混淆检测框架 - CIS 2019大会

Maps execution-coverage data onto Ghidra disassembly to highlight visited code paths and accelerate reverse-engineering workflows.

Exploit for Jenkins serialization vulnerability - CVE-2016-0792

Pishi is a code coverage tool like kcov for macOS.

Xyntia, the black-box deobfuscator

Fuzzing Framework for Modules in Apache HTTPD Server


Laravel debug mode - Remote Code Execution (RCE)

In Dolibarr 17.0.0 with the CMS Website plugin (core) enabled, an authenticated attacker can obtain remote command execution via php code injection…

Seal Security example — vulnerable npm app (EJS CVE-2022-29078) remediated to sealed versions; GitHub Actions + Jenkins integration

Seal Security example — vulnerable Maven app (SnakeYAML CVE-2022-1471) remediated to sealed versions; GitHub Actions + Jenkins integration


Static analysis CLI tool that reduces Node.js application attack surface by constructing dependency graphs and removing unused modules and functions…

Semantic-aware SAST scanner for Node.js applications that detects insecure code patterns using libsast pattern matching and semgrep syntax-aware…

Django application that performs SAST and Malware Analysis for Android APKs

Example application, vulnerable to CVE-2023-32692 (Validation Rule Injection in the PHP Framework CodeIgniter)

OS Command Injection Vulnerability via Plugin Execution in Figma Desktop Application