
free-interactive-ai-training-materials
Curated collection of free, interactive AI-powered training materials for security awareness education, with community contributions and practical…

Curated collection of free, interactive AI-powered training materials for security awareness education, with community contributions and practical…

A collection of scripts and documents to help future XProtect Remediator (XPR) research

A collection of threat hunting and detection engineering Jupyter notebooks accompanying the Weekly Purple Team YouTube channel. Each notebook…

Collection of Linux hardening scripts and security configurations for system auditing, access control, and defensive posture improvement. Includes…

Step-by-step reproduction and analysis of CVE-2021-2109, a Weblogic Server remote code execution vulnerability via JNDI injection, with POC and…

Proof of Concept Appliction for testing CVE-2022-42889

Demonstration of the expression language (EL) injection vulnerability CVE-2018-14667 using the photoalbum lab under Jboss application server

Proof of concept for CVE-2026-54992, an MSMQ remote-read integer overflow

A Proof of concept scenario for exploitation of CVE2021-38297 GO WASM buffer-overflow

A critical command injection vulnerability was found in multiple API endpoints of the Atlassian Bit bucket Server and Data center. This vulnerability…

Collection of 41 capture-the-flag challenges deployed via Docker and Azure Kubernetes using the RootTheBox platform. Includes terminal-based puzzles…

This demonstration video shows how we can control the victim's device by sending the innocent-looking PDF file to the target which actually consists…

Proof-of-concept emulation and analysis of CVE-2025-1094, a critical PostgreSQL SQL injection vulnerability. Includes Docker-based lab setup, exploit…

The 100 Days of YARA Challenge to write YARA rules consistently

A lab demonstration of the log4shell vulnerability: CVE-2021-44228

this is a modified POC of rz1027 for CVE-2026-20896

Experimental kernel-mode EDR research project focused on explainable detection of suspicious in-memory execution patterns, producing human-readable…

Instructions for installing a vulnerable version of Exim and its expluatation