
cves-2025-11187_15467_69418
OpenSSL pocs: PKCS#12 stack overflow, CMS IV overflow, OCB infoleak [partial chain]

OpenSSL pocs: PKCS#12 stack overflow, CMS IV overflow, OCB infoleak [partial chain]

Example of using revealed "Spectre" exploit (CVE-2017-5753 and CVE-2017-5715)

CVE-2024-29050 is a vulnerability found in the Windows Cryptographic Services.

Educational laboratory for studying CVE-2014-0160 (Heartbleed) and framing inconsistencies in TLS heartbeat handling.

CVE-2020-0601: Windows CryptoAPI Vulnerability. (CurveBall/ChainOfFools)

Proof-of-concept exploit for CVE-2026-2005, a heap buffer overflow in PostgreSQL pgcrypto's pgp_pub_decrypt, demonstrating oversized PGP session key…

Stack buffer overflow in PKCS#12 PBMAC1 PBKDF2 keylength (OpenSSL 3.X)

A flaw in a popular RSA implementation allows attackers to bypass key validation by supplying a modulus that appears valid but is actually factorable…

A PoC for CVE-2025-40019 in ESSIV module. (exploit WIP)

Custom vulnerable VM (Ubuntu 14.04) designed for teaching multi-stage penetration testing. Features 10 interconnected challenges across Forensics,…

PoC for "CurveBall" CVE-2020-0601

Proof-of-concept or exploit code targeting CVE-2020-0601, a Windows CryptoAPI spoofing vulnerability.

simulation experiment of Curveball (CVE-2020-0601) attacks under ECQV implicit certificates with Windows-like verifiers


Ultra-lightweight RTOS for IoT with preemptive scheduling, TLS/DTLS, MQTT, CoAP, POSIX compatibility, and MPU-based memory protection. Kernel under…

First-ever decryptor for The Gentlemen ransomware — recovers encryption keys from process memory dumps using X25519 ephemeral key extraction. 35/35…

Proof-of-concept exploit for CVE-2014-0160 (Heartbleed) targeting DTLS, demonstrating memory disclosure vulnerability in TLS/DTLS implementations.