
activemq-ids-ips-lab
IDS/IPS lab for detecting and preventing Apache ActiveMQ RCE (CVE-2023-46604) using GVM, Nmap, Snort, iptables, and UFW.

IDS/IPS lab for detecting and preventing Apache ActiveMQ RCE (CVE-2023-46604) using GVM, Nmap, Snort, iptables, and UFW.

Exploits for Typecho CVE-2024-35538, CVE-2024-35539 and CVE-2024-35540

Research on CrushFTP AS2 authentication bypass allowing unauthenticated admin access. Includes PoC scripts, detection rules, and technical analysis…

High-performance Rust HTTP/HTTPS proxy with active defense: rate limiting, reputation-based access, WAF (anti-bot, anti-injection, path protection),…

CVE-2025-41646 - Critical Authentication bypass

CVE‑2025‑55182 Detection

PoC | NextJS Middleware 15.2.2 - Authorization Bypass

Exploit for CVE-2023-27100 bypassing pfSense anti-brute force protection via crafted X-Forwarded-For headers and anti-CSRF tokens to evade sshguard…

Repository for CVE-2023-4631 vulnerability.

Security research on Erlang/OTP SSH CVE-2025-32433.

Freeze is a payload toolkit for bypassing EDRs using suspended processes, direct syscalls, and alternative execution methods

[POC] Asynchronous reverse shell using the HTTP protocol.

Cobalt Strike C2 Reverse proxy that fends off Blue Teams, AVs, EDRs, scanners through packet inspection and malleable profile correlation

A VBA implementation of the RunPE technique or how to bypass application whitelisting.

Scripts for: How to Build a Covert Pentesting Infrastructure Almost Free

RunPE implementation with multiple evasive techniques (2)

Obfuscate specific windows apis with different apis