
screenpipe
YC (S26) | Open Computer History | Record your screen continuously locally and provide context to your agents (Claude, Codex, Openclaw, Hermes,…

YC (S26) | Open Computer History | Record your screen continuously locally and provide context to your agents (Claude, Codex, Openclaw, Hermes,…

OSINT & recon toolkit // 100+ tools, one-command installer, SOCMINT, GEOINT, network recon, dark web, forensics & more.

9 MITRE ATT&CK-mapped KQL detections on a live Microsoft Sentinel + Defender XDR environment (control-plane, endpoint, identity), with a PR-gated…

This repository contains the complete record of my three-year research journey, covering the project from foundational concepts to advanced-level…

Controlled defensive analysis of CVE-2025-22442 work-profile provisioning, policy timing, and enterprise isolation.

A collection of awesome platforms, blogs, documents, books, resources and cool stuff about security

⚠️ This repo is no longer in use. Please refer to https://github.com/OWASP/www-project-vulnerable-web-applications-directory

CVE-2026-63030 / CVE-2026-60137 - WordPress pre-auth RCE scanner

HTML parser for PEAS output with additional features

.NET 7 fork of seal-security-nuget-demo: same CVE-2024-21907 exploit story, retargeted for customers locked to .NET SDK 7.

This repository contains my work for a cybersecurity assignment where I exploited the real-world Log4Shell (CVE-2021-44228) vulnerability inside a…

A collection of useful links for Pentesters

AWSGoat : A Damn Vulnerable AWS Infrastructure

This is a container of web applications that work with OWASP Bug Bounty for Projects

CTF challenge to learn and practice exploiting the Next.js middleware bypass vulnerability (CVE-2025-29927) by finding a flag in an admin page.

PoC for the recent critical vuln affecting OpenSSH versions < 9.3p2

An app with really insecure crypto. To be used to see/test/exploit weak cryptographic implementations as well as to learn a little bit more about…

针对 CVE-2020-7699 的复现,软件安全原理课程大作业