
REx-skill
REx@Skill - Agentic Reverse Engineering eXecution Skill for binary vulnerability discovery

REx@Skill - Agentic Reverse Engineering eXecution Skill for binary vulnerability discovery

DoSinator is a powerful Denial of Service (DoS) testing tool developed in Python.

Python proof-of-concept for detecting CVE-2023-27372 in SPIP CMS. Scans single or multiple URLs for the vulnerability and outputs results to terminal…

VOIP Security Audit Framework

SonicWall SSL-VPN RCE

The porte_plume plugin used by SPIP before 4.30-alpha2, 4.2.13, and 4.1.16 is vulnerable to an arbitrary code execution vulnerability. A remote and…

SIP bypass using package scripts

Research repository for CVE-2026-74469 (DiagSpill), a Linux kernel SCTP peer transport counter overflow causing an out-of-bounds write, with PoC,…

Set of tools to audit SIP based VoIP Systems

GameOver(lay) Ubuntu Privilege Escalation

SSH-MITM - ssh audits made simple

Go exploit for CVE-2026-85706, an unauthenticated arbitrary file read in GitLab CE/EE Workhorse via URL-encoding bypass, with concurrent requests and…

Local privilege escalation PoC for CVE-2026-74469, exploiting an SCTP diagnostic-reply kernel memory corruption to gain root on Linux x86-64 systems.

Proof-of-concept exploit for CVE-2026-85769, a heap out-of-bounds read in libtpms TPM 2.0 state deserialization, demonstrating denial of service via…

A WiFi Pineapple infecting worm.

Stored Cross-Site Scripting (XSS) in osTicket via Vulnerable Bootstrap Tooltip Component

CVE-2025-41115

Unprivileged proof-of-concept for CVE-2026-74586, a Linux kernel SCTP ASCONF use-after-free. Provides a raw-packet trigger, reliability metrics, and…