


Detector + PoC for Linux page-cache write vulnerabilities: Copy Fail (CVE-2026-31431) and Dirty Frag (CVE-2026-43284/43500). Authorized security…

Docker-based lab environment and proof-of-concept scripts for exploiting CVE-2020-10560, an arbitrary file read vulnerability in OSSN. Includes PHP…


Dockerized vulnerable lab demonstrating CVE-2024-2083 in ZenML, a path traversal vulnerability in the step logs API allowing arbitrary file read.

Docker Compose-based homelab environment for testing and exploiting CVE-2025-68613, with n8n workflow automation for security experimentation.

Educational demonstration of exploiting CVE-2017-0143 (EternalBlue) on Windows 7 using Metasploit in a controlled lab environment for penetration…

docker for CVE-2022-42889

SNP Assignment 1 Report - Linux box exploitation ( Vulnerability CVE-2014-0038)

This repository provides a learning environment to understand how an Exim RCE exploit for CVE-2018-6789 works.

Demo to show how Log4Shell / CVE-2021-44228 vulnerability works

This lab demonstrates the exploitation of CVE-2024-24945, a heap corruption vulnerability affecting NGINX. The objective was to understand how memory…

Sample docker-compose setup to show how this exploit works

This experiment is destinated to demonstrate how the DNS rebinding attack works on an emulated IoT. In the setup, we have a simulated IoT device,…

An app with really insecure crypto. To be used to see/test/exploit weak cryptographic implementations as well as to learn a little bit more about…

CTF challenge to learn and practice exploiting the Next.js middleware bypass vulnerability (CVE-2025-29927) by finding a flag in an admin page.

A modular framework for benchmarking LLMs and agentic strategies on security challenges across HackTheBox, TryHackMe, PortSwigger Labs, Cybench,…

Local lab for understanding CVE-2025-55182 RCE in React Server Components/Next.js. Includes a deliberately vulnerable app and optional scanner helper…