
cve-2026-105221-gist-tls
CVE-2026-105221 - gist RubyGem - High - MITM - GitHub OAuth token theft

CVE-2026-105221 - gist RubyGem - High - MITM - GitHub OAuth token theft

Self-hosted OWASP CTF kit: one box, one free GitHub org, no cloud dependencies

PoC exploit for Adminer < 5.4.3 unauthenticated RCE via MSSQL PDO DSN injection, including Docker lab and negative test.

Proof-of-concept lab demonstrating command injection in GitHub Actions workflow dispatch (CVE-2026-39866). Runs vulnerable and patched versions…

CVE-2026-31900 Vulnerable Lab - psf/black GitHub Action RCE

Python-based mass scanner for validating a specific WordPress AJAX behavior in authorized environments, supporting URL normalization, endpoint…

An example C program which contains vulnerable code for common types of vulnerabilities. It can be used to show fuzzing concepts.

Cracking BitLocker encryption based on CVE-2023-21563 vulnerability

CVE2PoC is a tool that helps penetration testers, bug hunters, and security researchers quickly find public exploits or PoCs related to a CVE ID

Estudio del bug CVE-2026-31431

Live Server VSCode Vulnerability (CVE-2025-65717) Demo

OWASP Smart Contract Security (SCS) Project

THREE different reproduction, WORKDIR, EXEC & RUNC.

GitHub repository with Dockerfile and files to create a vulnerable environment for CVE-2023-30212, enabling exploration of the exploitability of this…

Tools and Techniques for Blue Team / Incident Response

9 MITRE ATT&CK-mapped KQL detections on a live Microsoft Sentinel + Defender XDR environment (control-plane, endpoint, identity), with a PR-gated…

Intentionally vulnerable Next.js application demonstrating CVE-2025-29927 authentication bypass via middleware WAF evasion. Designed for security…