
cve-2022-1471-jira-lab
Offline CVE-2022-1471 lab: SnakeYAML unsafe deserialization to RCE; compares vulnerable 1.x vs fixed 2.x using a harmless local payload.

Offline CVE-2022-1471 lab: SnakeYAML unsafe deserialization to RCE; compares vulnerable 1.x vs fixed 2.x using a harmless local payload.

Archived CTF challenge sources and deployable sandboxes since 2017, with intentionally vulnerable exercises for hands-on security training and…

DEFCON 30 Mainframe buffer overlow workshop container


An example C program which contains vulnerable code for common types of vulnerabilities. It can be used to show fuzzing concepts.


Moment.js vuln lab

BLEBoy is a training tool to teach users about BLE security by providing a single BLE peripheral that can be used to experiment with each BLE pairing…

Detection of Linux Malware C2 RedXOR - demonstration

A collection of web pages vulnerable to SQL injection flaws

Exploit for CVE-2023-7028 - GitLab CE/EE

analysis of the sudo buffer overflow affect sudo version <1.8.26 and how to use GCC to compile publicly availible exploits

A micro lab for CVE-2021-44228 (log4j)

Detection, Exploit and Mitigation for CVE 2023 46604.

Materials for Windows Malware Analysis training (volume 1)