
openssl-1.1.1g_CVE-2021-23840
OpenSSL toolkit providing TLS/SSL protocols and general-purpose cryptographic library with command-line tools for key generation, certificate…

OpenSSL toolkit providing TLS/SSL protocols and general-purpose cryptographic library with command-line tools for key generation, certificate…

OpenSSL 1.1.1g source snapshot, a robust TLS/SSL and general-purpose cryptographic library with command-line tools for key generation, certificate…

OpenSSL 1.1.0g cryptographic library and TLS toolkit, providing encryption, decryption, certificate management, and SSL/TLS protocol support for…

OpenSSL toolkit providing TLS/SSL protocols and general-purpose cryptographic library with command-line tools for key generation, certificate…

Open-source services framework for building and developing SOAP, RESTful, and CORBA services with support for WS-Security, JAX-WS, and JAX-RS APIs.

1.验证CVE-2016-4437、2.解析rememberMe的文件和CBC加密的IV偏移

Proof-of-concept for CVE-2018-0114, demonstrating unauthenticated remote token re-signing vulnerability in versions before 0.11.0.

Proof of Concept for CVE-2020-10759 (fwupd signature validation bypass)

Detailed technical write-up and proof-of-concept for CVE-2022-26923, an Active Directory Certificate Services privilege escalation vulnerability,…

Exploit for CVE-2024-43044 enabling arbitrary file read from Jenkins controller to extract and decrypt credentials.xml using secret keys.

Python exploit script for CVE-2019-5420, targeting Ruby on Rails signed-session AES GCM key brute-forcing to achieve remote code execution in…

Ninja Framework sensitive information leak due to weak encryption

KeePass 2.53.1 with removed ECAS Trigger System Remediating CVE-2023-24055

Decrypts Hikvision IP camera configuration files extracted via CVE-2017-7921 authentication bypass, revealing user credentials and device settings.

ELF binary packer that encrypts code sections and injects a runtime decryption stub for 64-bit Linux executables, demonstrating code injection and…

RFC6265-compliant cookie parsing and CookieJar management library for Node.js, with CVE-2023-26136 security patch. Supports cookie creation,…

JSON sanitizer that converts malformed JSON-like content into valid, safe JSON, preventing code injection and ensuring standards compliance for web…

A script to change OpenSSL versions on Ubuntu to 1.1.1q to protect against CVE-2022-2097.