
CVE-2021-23394
Docker container to setup a vulnerable elfinder version on both nginx and apache servers. Can be used to test vulnerability POC

Docker container to setup a vulnerable elfinder version on both nginx and apache servers. Can be used to test vulnerability POC

A collection of exploits and documentation that can be used to exploit the Linux Dirty Pipe vulnerability.

CVE-2023-50164 An attacker can manipulate file upload params to enable paths traversal and under some circumstances this can lead to uploading a…

The issue is due to the fact that when installing a package, Golang will build native extensions. This can be used to pass additional flags to the…

In this repository you can find the files used to try to produce a POC for the CVE-2023-50387

A Python package is used to execute Atomic Red Team tests (Atomics) across multiple operating system environments.

NOTICE This repository contains the public FTC SDK for the SKYSTONE (2019-2020) competition season. If you are looking for the current season's FTC…

C# Tool to interact with MS Exchange based on MS docs

Desktop application to browse and search Living Off The Land Binaries and Scripts (LOLBAS) for Windows and Unix binaries (GTFOBins) for privilege…

Seal Security example — vulnerable npm app (EJS CVE-2022-29078) remediated to sealed versions; GitHub Actions + Jenkins integration

Seal Security example — vulnerable Maven app (SnakeYAML CVE-2022-1471) remediated to sealed versions; GitHub Actions + Jenkins integration

Seal Security example — vulnerable pip app (PyYAML CVE-2020-14343) remediated to sealed versions; GitHub Actions + Jenkins integration

This repository provides an exploit for CVE-2024-28247, highlighting a vulnerability that permits a remote attacker to read arbitrary files on the…

analysis of the sudo buffer overflow affect sudo version <1.8.26 and how to use GCC to compile publicly availible exploits

Archived CTF challenge sources and deployable sandboxes since 2017, with intentionally vulnerable exercises for hands-on security training and…

Offensive Software Exploitation Course

CVE-2021-1675 Detection Info

PoC for Nginx 0.6.18 - 1.20.0 Memory Overwrite Vulnerability CVE-2021-23017