


Demonstrates CVE-2026-1122 Ed25519 signature bypass via low-order point injection, forging malicious IoT firmware updates with Python and C verifier…

PoC for CVE-2026-49230: Apache APISIX jwe-decrypt authentication bypass (missing AES-GCM tag validation, CWE-354, CVSS 9.1)

Detects the algorithm of input JWT Token and provide options to generate the new JWT token based on the user selected algorithm.

CVE-2022-21449 Proof of Concept demonstrating its usage with a client running on a vulnerable Java version and a malicious TLS server

Golang malware development library

A new simple and powerfull packer for malware

Simplification of General Mixed Boolean-Arithmetic Expressions: GAMBA

Config Extractor for Asyncrat/Dcrat/VenomRat

Collection of various malicious functionality to aid in malware development

repo showcasing generating "psychic signatures for java" implemented in a nodejs environment 😅


Hive v5 file decryption algorithm

Static Decryptor for IcedID Malware

Exploitation of a vulnerability in Cisco's node-jose, a JavaScript library created to manage JWT.

Padding oracle exploit for Oracle Access Manager (CVE-2018-2879) enabling decryption of encrypted cookies and encryption of arbitrary plaintext for…

Proof-of-concept for CVE-2021-34558, demonstrating a TLS handshake panic in Go's crypto/tls via a malicious server with mismatched certificate and…

Ghidra plugin that enhances reverse engineering by fixing missed disassembly, detecting functions, labeling crypto constants, and renaming functions…