
PwnAdventure3
PwnAdventure3 Server

PwnAdventure3 Server

Use Terraform to create your own vulnerable by design AWS IAM privilege escalation playground.

Course repository for PowerShell for Pentesters Course

CVE-2025-49844 (RediShell)

AI-agent skills for distributed-systems testing

EmbedOS - Embedded security testing virtual machine

Exploitable target to CVE-2017-5638

Privilege escalation to root using sudo chroot, NO NEED for gcc installed.

DonkAI is a hands-on lab for the OWASP Top 10 for LLM Applications (2025) - no real LLM required.

A benchmark for LLM-driven bug discovery: 77 challenges across 43 open-source projects (C/C++/Java).

A/B Docker lab + PoC for CVE-2026-32475 (Elementor Pro Forms unauthenticated arbitrary file upload -> RCE via validation/move loop desync)

The vulnerable recurrence docker environment for CVE-2022-44268

CTF-style Docker lab for CVE-2026-41651 (Pack2TheRoot): PackageKit permissive-polkit local privilege escalation

A small docker lab to play with cve-2026-24061, the inetutils-telnetd authentication bypass.

CVE Reproduction: cve-2026-21509-office_security_bypass_reproduction

Reproduction lab for CVE-2026-54316 (Claude Code WebFetch huggingface.co bare-hostname permission bypass / exfiltration)

CVE-2022-24903 Heap-based buffer overflow

A one-stop repo/ information hub for all log4j vulnerability-related information.