
CVE-2025-32433-PoC-Analysis
This is an analysis for CVE-2025-32433 (Erlang OTP SSH Vulnerability). I did not write any of the code, I only wrote comments describing what the…

This is an analysis for CVE-2025-32433 (Erlang OTP SSH Vulnerability). I did not write any of the code, I only wrote comments describing what the…

Cybersecurity writeups, walkthroughs, and technical notes by Nanashi Bx2.

Awesome information for WebSockets security research

Collection of DEF CON 30 CTF challenge binaries, build scripts, and solve scripts for practicing binary exploitation and reverse engineering.

A collection of CTF write-ups, pentesting topics, guides and notes. Notes compiled from multiple sources and my own lab research. Topics also support…

Here you will get awesome collection of mostly all well-known and usefull cybersecurity books from beginner level to expert for all cybersecurity…

Educational examples porting Linux kernel vulnerabilities to Rust, featuring intentionally vulnerable code and exploits for learning kernel security…

Collection of 41 capture-the-flag challenges deployed via Docker and Azure Kubernetes using the RootTheBox platform. Includes terminal-based puzzles…

💀 A collection of proof-of-concept exploit scripts on docker lab environments has been discovered by Securi Trust Team. Vulnerabilities has been…

Curated collection of CVE demonstrations with fix recommendations for hands-on vulnerability analysis and educational exploitation practice.

A collection of web pages vulnerable to SQL injection flaws

Collection of Linux hardening scripts and security configurations for system auditing, access control, and defensive posture improvement. Includes…

Vulnerable environments paired with ready-to-use Nuclei templates for security testing and learning! 🚀

Curated collection of validated Joomla exploit artifacts with Docker lab environments. Includes RCE, SQLi, XSS, and privilege escalation scripts…

The MAS Crackmes aka. UnCrackable Apps, a collection of mobile reverse engineering challenges part of the OWASP MAS project.

A collection of servers which are deliberately vulnerable to learn Pentesting MCP Servers.

Proof-of-concept exploit for CVE-2017-1000117 (Git SSH command injection) that writes command output to a web-accessible file. Part of VulApps…

Collection of methodology and test case for various web vulnerabilities.