
Embedded-PDF
This demonstration video shows how we can control the victim's device by sending the innocent-looking PDF file to the target which actually consists…

This demonstration video shows how we can control the victim's device by sending the innocent-looking PDF file to the target which actually consists…

This demonstration video shows how we can control the victim's device by sending the innocent-looking PDF file to the target which actually consists…

Apache Log4j is a logging tool written in Java. This paper focuses on what is Log4j and log4shell vulnerability and how it works, how it affects the…

This repo contains both the exploit and the explaination of how this vulnerability is exploited

"Can I take over XYZ?" — a list of services and how to claim (sub)domains with dangling DNS records.

A phone number can reveal whether a device is active, in standby or offline (and more). This PoC demonstrates how delivery receipts + RTT timing leak…

This publication is a collection of various common attack scenarios on Microsoft Entra ID (formerly known as Azure Active Directory) and how they can…

Vulnerable app with examples showing how to not use secrets

The OWASP NodeGoat project provides an environment to learn how OWASP Top 10 security risks apply to web applications developed using Node.js and how…

This is a repo which documents real bugs in real software to illustrate trends, learn how to prevent or find them more quickly.

These templates are suggestions of how the Obsidian notetaking tool can be used during an OSINT investigation. The example data in those files should…

A curated list of public TEE resources for learning how to reverse-engineer and achieve trusted code execution on ARM devices

how to look for Leaked Credentials !

The goal of this guide is very simple - to teach anyone interested in cyber security, regardless of their knowledge level, how to make the most of…

Tips on how to write exploit scripts (faster!)

How to Install OpenClaw on an Android Phone and Control It via WhatsApp

A tutorial on how to write a packer for Windows!

CVE-2020-15368, aka "How to exploit a vulnerable driver"