



This repository provides a learning environment to understand how an Exim RCE exploit for CVE-2018-6789 works.

[First-Blood-XO] React Server Component endpoint vulnerable to CVE-2025-55182 (RCE) → enumerated SUID binaries → /usr/bin/perl had SUID set → used…

CVE-2026-32746 - GNU InetUtils telnetd LINEMODE SLC Buffer Overflow PoC (pre-auth RCE, CVSS 9.8)

Bash script for Privilege Escalation via "ndsudo" (Netdata Local Exploit)

Testing POC for use cases

Blue Team detection lab created with Terraform and Ansible in Azure.

Explorations of CVE-2024-49368 + Exploit Development

This lab was set up to test CVE-2023-33733

This project aims at re-analyzing and PoC about CVE-2023-33733. Reportlab up to v3.6.12 allows attackers to execute arbitrary code via supplying a…

WVCTF or WebVulnCTF is a gamified web platform which promotes training in pentesting and web application development security in an entertaining way.…


This repository provides a Docker container for simulating the CVE-2023-30212 vulnerability, allowing you to practice and understand its impact. It…

Stereotyped Challenges (2014~2023)

reproducing an old istio bug