
security-research
This project hosts security advisories and their accompanying proof-of-concepts related to research conducted at Google which impact non-Google owned…

This project hosts security advisories and their accompanying proof-of-concepts related to research conducted at Google which impact non-Google owned…

A cheatsheet for exploiting server-side SVG processors.


There are many cheat sheets out there, but this is mine.

Curated Semgrep rule repository for GitLab SAST, providing static analysis patterns to detect security vulnerabilities across multiple programming…

This repository hosts PoC exploits for vulnerabilities I've discovered, provided for education and to highlight the importance of system security.

Materials for CVE-2024-30052.

Scanner and attack suite for hosts that forward unauthenticated packets via IPIP and GRE protocols. (CVE-2020-10136 CVE-2024-7595)

Hunt for and Exploit the libSSH Authentication Bypass (CVE-2018-10933)

Keycloak 12.0.1 - 'request_uri ' Blind Server-Side Request Forgery (SSRF) (Unauthenticated)

Proof-of-Concept (PoC) for CVE-2025-29306, a Remote Code Execution vulnerability in FoxCMS. This Python script scans single or multiple targets,…

This repo hosts TUKRU's Linux Privilege Escalation exploit (CVE-2021-22555). It demonstrates gaining root privileges via a vulnerability. Tested on…

Different methods to detect a virtualized environment or potential debugging


Rust-based scanner for Grafana path traversal vulnerability (CVE-2021-43798). Checks hosts for the flaw and reads arbitrary files from affected…

🔬 Jupyter notebook to help automate some of the forensic analysis related to Citrix Netscalers compromised via CVE-2019-19781

The `swp_debug` parameter in `admin-post.php` allows remote attackers to include external files containing malicious PHP code, which are evaluated on…