
Mindmap
This repository will contain many mindmaps for cyber security technologies, methodologies, courses, and certifications in a tree structure to give…

This repository will contain many mindmaps for cyber security technologies, methodologies, courses, and certifications in a tree structure to give…

A video presentation analysing the technical details, scale and lessons to be learned from the MOVEit CVE-2023=3462(CS50 Introduction to Cyber…

Public advisory landing page documenting CVE-2026-54520, a high-severity path traversal vulnerability in ai-agent-automation's workflow executor,…

🌴Linux、macOS、Windows Kernel privilege escalation vulnerability collection, with compilation environment, demo GIF map, vulnerability details,…

A collection of my Semgrep rules to facilitate vulnerability research.

CVE-2026-1434 - Omega-PSIR is vulnerable to Reflected XSS via the lang parameter. An attacker can craft a...

Programmatically create hunting rules for deserialization exploitation with multiple keywords, gadget chains, object types, encodings, and rule types

Comprehensive database of x86/x64 instruction tables, latencies, and microarchitecture details for CPU performance analysis and low-level reverse…

Russian-language overview and analysis of the n-day vulnerability CVE-2026-27654, covering exploitation details and technical breakdown.

Provides technical details and mitigation guidance for the Pack2TheRoot privilege escalation vulnerability (CVE-2026-41651) affecting Linux systems.

Post-incident report on CVE-2026-20131 (CVSS 10.0), a Cisco FMC insecure deserialization vulnerability exploited by Interlock ransomware. Details…

Proof-of-concept and reference repository for CVE-2026-47761, a stored cross-site scripting (XSS) vulnerability in TinyMCE. Includes CVE details,…

Technical documentation and resources for CVE-2026-21250, a Windows HTTP.sys local privilege escalation vulnerability, including affected versions,…

Open standard for documenting security-relevant metadata of AI models, including training data provenance, PII risk, known vulnerabilities, and…

Public disclosure and proof-of-concept for CVE-2025-61455, a critical SQL injection in E-commerce Project v1.0, including technical details, PoC, and…

Proof-of-concept disclosure for CVE-2023-47437: stored cross-site scripting vulnerability in Pachno affecting comment forms. Includes affected…

Educational presentation analyzing CVE-2021-21193, a use-after-free vulnerability in Google Chrome's Blink engine, including exploitation details and…

Educational analysis of Apache Struts 2 RCE vulnerability CVE-2017-5638, including exploit details, Equifax case study, and prevention measures.