
jadx-magic-strings
JADX plugin that extracts method names, class references, and source file paths from string constants found in DEX files and decompiled Android code.

JADX plugin that extracts method names, class references, and source file paths from string constants found in DEX files and decompiled Android code.

Hermes — an ephemeral, Docker-powered OSINT framework for testing, tinkering, and secure investigative automation.

Proof-of-concept exploit for CVE-2017-3078, a memory corruption vulnerability in Adobe Flash Player ATF module enabling arbitrary code execution on…

Safely detect whether a UniFi OS Server is vulnerable to CVE-2026-34908

Kernel Stack info leak at exportObjectToClient function

A ESP32-S3–based usb keylogger with wifi, easy DIY-able with widely available hardware.

Incident Response Documentation made easy. Developed by Incident Responders for Incident Responders

Python exploit class for CVE-2025-58360, an XXE vulnerability in GeoServer's GetMap function enabling arbitrary file read. Includes automated…

Technical documentation and proof-of-concept for CVE-2025-20343, a high-severity denial-of-service vulnerability in Cisco ISE allowing…

Proof of Concept (PoC) for a stack-based buffer overflow in Steghide 0.5.1. Demonstrates how long file paths trigger a crash (DoS) and leak sensitive…

A final project for "Network Security" class at NYCU (National Yang Ming Chiao Tung University, Taiwan). Exploiting a CVE in "EasyAppointments"…

A buffer overflow vulnerability in the XNU kernel's ICMP error code causes IOS devices to crash (laptops and mobiles).

In FreeRDP less than or equal to 2.0.0, when running with logger set to "WLOG_TRACE", a possible crash of application could occur due to a read of an…

Repository documenting CVE-2009-3036, an HTML injection vulnerability in Symantec IM Manager, including details and exploit references.

crash poc & Leak info PoC

Python script to exploit CVE-2020-35391 on Tenda F3 V3/V4 routers, enabling unauthorized download of configuration, flash, and syslog files.

Cyberstop Web Server for Windows 0.1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long HTTP…

Crash File ( Poc for CVE-2024-24684)