
cve-2021-21994_POC
Validates and exploits VMware ESXi SFCB authentication bypass (CVE-2021-21994) via a probe/fuzz harness, enabling unauthenticated CIM-XML enumeration.

Validates and exploits VMware ESXi SFCB authentication bypass (CVE-2021-21994) via a probe/fuzz harness, enabling unauthenticated CIM-XML enumeration.

Proof-of-concept and GLSL fuzzer for CVE-2026-9999 in Chrome's ANGLE/Metal WebGL backend, with build fingerprinting, curated shaders, and crash…

CVE-2026-64747 AGXG14P count-bitmask OOB trigger probe (A15/iOS 26.5.2)

High performance fuzzing using riscv to x86 binary translations and modern fuzzing techniques

Awesome information for WebSockets security research

Fuzzes CPU implementations by generating test inputs from software proxies, then executes them on real hardware to detect microarchitecture defects…

Fully dockerized Linux kernel debugging environment

Snapshot-based coverage-guided windows kernel fuzzer

AArch64 fuzzer based on the Apple Silicon hypervisor

This cheatsheet is built for the Bug Bounty Hunters and penetration testers in order to help them hunt the vulnerabilities from P4 to P1 solely and…

A curated list of public TEE resources for learning how to reverse-engineer and achieve trusted code execution on ARM devices

An example C program which contains vulnerable code for common types of vulnerabilities. It can be used to show fuzzing concepts.


The materials of "Hypervisor 101 in Rust", a one-day long course, to quickly learn hardware-assisted virtualization technology and its application…

Toy scripts for playing with WinDbg JS API

Demystifying Exploitable Bugs in Smart Contracts