
Web-App-PenTesting
Web application penetration testing lab — vulnerable Flask app, automated scanner, and professional pentest report. Covers OWASP Top 10, SQLi, XSS,…

Web application penetration testing lab — vulnerable Flask app, automated scanner, and professional pentest report. Covers OWASP Top 10, SQLi, XSS,…

Web vulnerability scanner built with C++17 and Qt 6, featuring a GUI, CLI, configurable crawling, and JSON reports. Reconstructed for educational…

Modular Bash toolkit that hardens Debian/Ubuntu systems for CyberPatriot competitions, automating account, firewall, SSH, PAM, and service hardening…

Windows Apache Tomcat resource limits implementation guide for CVE-2022-41404 DoS vulnerability protection

Defensive analysis of CVE-2026-9055, an unauthenticated privilege escalation in Amelia WordPress booking plugin. Provides root cause breakdown,…

#PaperCut CVE-2026-81578 + CVE-2026-82078 Defense Toolkit 2 3 A **defensive** toolkit to check and understand exposure to the chained

Kerberos RC4 deprecation: detection, remediation and guidance (CVE-2026-20833)

A scanner and testter of the CVE-2025-11001 of 7-zip

Information about CVE-2026-27825 & CVE-2026-27826 discovered by Pluto Security and a bash script for identifying vulnerable mcp-atlassian instances…

Example Vulnerable application for CVE-2025–57833

Audit and incident response tool for CVE-2026-41940 vulnerability

centos 6.10 rpm for fix polkit CVE-2021-4034; centos 6.10的rpm包,修复CVE-2021-4034 漏洞

Guía de respuesta rápida y script de auditoría para CVE-2025-59287 (RCE crítica en WSUS).

An LLVM-based instrumentation tool for universal taint tracking, dataflow analysis, and tracing.

The Python Version of our Not Go-ing Anywhere Vulnerable Application


Interactive secure coding training with hands-on SCORM exercises covering OWASP Top 10 web and API vulnerabilities, Git/secrets exposure, and…

The Intelligent Process Lifecycle of Active Cyber Defenders