
CVE-2026-31321
Proof-of-concept demonstrating methods to disable or bypass Windows Defender by hiding, locking, or protecting its folders, enabling persistence…

Proof-of-concept demonstrating methods to disable or bypass Windows Defender by hiding, locking, or protecting its folders, enabling persistence…

Zero-trust SSH bastion proxy with Vault-backed key management, RBAC policy enforcement, full session recording, and admin TUI for auditable access to…

Python verification script for CVE-2026-41940, an authentication bypass in cPanel & WHM, enabling authorized defensive validation and patching…

Research and detection guidance for CVE-2026-31431, an io_uring-based bypass of syscall monitoring. Provides detection rules for Tetragon, Falco, and…

Testing WAF protection against CVE-2021-44228 Log4Shell

PowerShell script that applies a temporary registry-based mitigation for CVE-2026-21509, a Microsoft Office security feature bypass, with backup and…

Proof-of-concept demonstrating a Windows Defender bypass technique for CVE-2026-5000, intended for controlled testing and defensive research.

CVE-2026-41940 cPanel/WHM auth bypass IOC scanner — fixes false positives in upstream detection script, adds log cross-correlation

Deployed patch for CVE-2026-11553, an authentication bypass vulnerability in VMware vCenter, with validation and deployment details for production…

Patch: RCE via authentication bypass (Ivanti Connect Secure)

Differential detection harness for CVE-2026-76036, a Dawn WebGPU heap buffer overflow in Chrome on Android. Probes vulnerable depth/stencil texture…

Protects software supply chain integrity by verifying each step is performed by authorized functionaries, using signed layout and link metadata.

A reverse proxy that provides authentication with Google, Azure, OpenID Connect and many more identity providers.

Curated index of game security research: anti-cheat internals, DMA attacks, reverse engineering, kernel/mobile protections, and graphics API hooking…

Security control plane for LLM agents: allowlists, owner kill switch, PIN sessions, rate limits, prompt-injection detection, and output scrubbing to…

ksmbd CVEs: CVE-2026-31717, CVE-2026-68083

Android Antivirus which doesn't require root, adb, ca install and cloud with many features and ways to detect more zero-day malware

Customer Assurance Operating System. Answer the security questionnaires your customers send you, once.