
Vulnerability-Assessment-Exploitation-Lab
Full-lifecycle penetration test of a legacy Linux environment (Metasploitable 2) emulated on Apple Silicon. Demonstrating network reconnaissance, RCE…

Full-lifecycle penetration test of a legacy Linux environment (Metasploitable 2) emulated on Apple Silicon. Demonstrating network reconnaissance, RCE…

OD&H's scanner for CVE-2024-25600 vulnerability in the Bricks Builder WordPress plugin. For use in Try Hack Me (THM) environments.

Analysis, detection, and mitigation of CVE-2023-20198 exploitation in Cisco IOS XE – QUB CSC3064 Network Security Assessment

The project was created to demonstrate the use of various tools for capturing NTLM hashes from users on a network and for executing phishing attacks…

Runs a fleet of intentionally vulnerable web/API apps in isolated Docker stacks for local penetration testing and validating scanner findings with…

Isolated Docker lab and static scanner for CVE-2025-55182, with vulnerable/patched Next.js builds and PoC validation of RSC Flight deserialization.

A comprehensive, step-by-step guide to mastering cybersecurity from beginner to expert level with curated resources, tools, and career guidance

RDP monster-in-the-middle (mitm) and library for Python with the ability to watch connections live or after the fact

An information security preparedness tool to do adversarial simulation.

CVE-2026-25632 — Fix Unsafe JSON Deserialization Leading to Remote Code Execution


CVE-2025-66398 — Signal K Server ≤ 2.18.0 RCE PoC

YC (S26) | Open Computer History | Record your screen continuously locally and provide context to your agents (Claude, Codex, Openclaw, Hermes,…

A list of interesting payloads, tips and tricks for bug bounty hunters.

Free hands-on digital forensics labs for students and faculty

Tools and Techniques for Blue Team / Incident Response

Penetration Testing Reference Bank - OSCP / PTP & PTX Cheatsheet