
distributed-system-testing
AI-agent skills for distributed-systems testing

AI-agent skills for distributed-systems testing

Research of exploit options for CVE-2024-53667 and their remediation

Demo of CVE-2025-29927 for secure programming class

Docker-based lab to reproduce CVE-2023-4863 (heap buffer overflow in libwebp) with automated crash demonstration, patched vs vulnerable comparison,…

Working POC of CVE-2026-6664 written by Sonnet 4.6

Interactive wizard to flash EFF's Rayhunter on Orbic RC400L — auto-detects OS

Educational lab documenting step-by-step exploitation of CVE-2025-5548 (Stack Buffer Overflow) on Windows 11, from fuzzing and crash analysis to…

Proof-of-concept exploit for CVE-2022-31630, an out-of-bounds read vulnerability in PHP's GD extension. Demonstrates crash and memory disclosure in…

Python exploit class for CVE-2025-58360, an XXE vulnerability in GeoServer's GetMap function enabling arbitrary file read. Includes automated…

A PoC for CVE-2023-46604 written as part of SPS class for the Advanced Cyber Security master's at UPB.

CVE-2025-14847 explaination and lab

Introduction to the exploitation of ELF binaries.

The materials of "Hypervisor 101 in Rust", a one-day long course, to quickly learn hardware-assisted virtualization technology and its application…

ay 09 — CVE-2025-27520 (BentoML-style insecure deserialization) — Local Docker lab

This is a minimal, educational simulation that demonstrates the _impact_ class of a management-plane parsing RCE (inspired by CVE-2025-20265). It…

Vulnerability in HTTP Protocol Stack Enabling Remote Code Execution and Potential System Crash.

Proof-of-concept demonstrating authorization bypass in Spring Security's RegexRequestMatcher (CVE-2022-22978) using CRLF injection, with analysis and…

Step-by-step reproduction guide for CVE-2021-44228 (Log4Shell) with JDK 8u20, vulnerable Log4j 2.14.1, marshalsec LDAP server, and custom payload…