
REx-skill
REx@Skill - Agentic Reverse Engineering eXecution Skill for binary vulnerability discovery

REx@Skill - Agentic Reverse Engineering eXecution Skill for binary vulnerability discovery

Proof-of-concept for CVE-2026-29628, a stack-based buffer overflow in tinyobjloader's experimental parser, with ASan/UBSan reproduction and fix…

Runtime instrumentation framework for building dynamic analysis tools: tracing, profiling, code coverage, memory debugging, fuzzing, and disassembly…

A collection of more than 170+ tools, scripts, cheatsheets and other loots that I've developed over years for Red Teaming/Pentesting/IT Security…

An example C program which contains vulnerable code for common types of vulnerabilities. It can be used to show fuzzing concepts.

Advisories, proof of concept files and exploits that have been made public by @pedrib.

Windows NT ioctl bruteforcer and modular fuzzer

A BASH Script to automate the installation of the most popular bug bounty tools

Default signature for Jaeles Scanner

Collection of CVE(work) on tenserflow binary pwning it

RedRoot is a Python-based, CLI-driven offensive security framework that brings essential red teaming tools into one unified terminal environment.…


ThorVG NULL pointer dereference via malformed SVG — AFL++ fuzzing writeup

Proof-of-concept exploit for CVE-2025-31931 demonstrating arbitrary shared library loading in Intel ITT API on Android, affecting OpenCV 4.10.

windows api bug

Behavior-preserving fix for CVE-2025-60876 HTTP header injection in BusyBox wget, with proof-of-concept, percent-encoding patch, and upstream…

An issue was discovered in Oniguruma 6.x before 6.9.4_rc2. In the function gb18030_mbc_enc_len in file gb18030.c, a UChar pointer is dereferenced…

CVE-2025-31200 - @Noahhw46 figured it out