
Flerken
A Solution For Cross-Platform Obfuscated Commands Detection presented on CIS2019 China. 动静态Bash/CMD/PowerShell命令混淆检测框架 - CIS 2019大会

A Solution For Cross-Platform Obfuscated Commands Detection presented on CIS2019 China. 动静态Bash/CMD/PowerShell命令混淆检测框架 - CIS 2019大会

A collection of useful resources for hacking WordPress and it's plugins and themes

Exploit for Jenkins serialization vulnerability - CVE-2016-0792

NebulaPulsar is a proof-of-concept in-memory implant framework for Java (JSP) and ASP.NET (ASPX/ASHX/ASMX) webshells, originally developed as part of…

Fuzzing Framework for Modules in Apache HTTPD Server

An API hooking framework for intercepting and monitoring Windows applications

Exploit PoC for CVE-2026-56848, a Node.js HTTP/2 heap-use-after-free that allows remote unauthenticated DoS. Includes raw-socket trigger, ASan build…

A Framework for Integrating Application Security into Software Engineering (FIASSE) using the Securable Software Engineering Model (SSEM)

Linux Kernel Sanitizers, fast bug-detectors for the Linux kernel

Inject code into running Python processes

LLM powered fuzzing via OSS-Fuzz.

Automatic SSTI detection tool with interactive interface

Lightweight fuzzing of a memory snapshot using KVM

Windows NT ioctl bruteforcer and modular fuzzer


A fast DOM based XSS vulnerability scanner with simplicity.

Fast XSS scanner with parameter analysis, WAF fingerprinting, and DOM/AST verification. Supports reflected, stored, and DOM-based XSS detection via…