
poc_salesforce_lightning
Academic purposes only. Attack against Salesforce lightning with guest privilege.
api-security-testingdata-exfiltrationexploitation+4
185

Academic purposes only. Attack against Salesforce lightning with guest privilege.

opensource repo for validating agentic AI applications: redteam, behavior, supply-chain, static analysis

Demonstrates a critical GraphQL batching alias-confusion SQL injection (CVE-2026-5432) with a vulnerable Node.js server and Python exploit for…

Black-box XXE scanner detecting in-band, error-based, and blind out-of-band injection via statistical baselining, parser fingerprinting, and OOB…

Burp Suite extension to detect CVE-2025-14847 (MongoBleed) via manual leak tests from a dedicated UI tab.