
CVE-2026-24061
Proof-of-concept exploit for GNU Inetutils telnetd authentication bypass (CVE-2026-24061) with Docker lab setup and Go PoC. Exploits NEW-ENVIRON…

Proof-of-concept exploit for GNU Inetutils telnetd authentication bypass (CVE-2026-24061) with Docker lab setup and Go PoC. Exploits NEW-ENVIRON…

A small go harness that uses Ollama to orchestrate LLMs in a restricted process flow

A Proof of concept scenario for exploitation of CVE2021-38297 GO WASM buffer-overflow

An autonomous reflective Go agent for full-cycle security auditing, WAF evasion, OOB LDAP verification, self-remediation (auto-patching), and…

CVE-2018-6574: go get RCE solution for pentesterlab challenge

Multi-language PoC (Python · Go · JS · C) and technical documentation for CVE-2025-63353, a critical predictable-default-PSK vulnerability in…

Lightweight Go toolkit plus a Dockerized Next.js lab to explore and triage CVE-2025-55182.

Educational proof-of-concept replicating CVE-2021-38297, a Go WASM buffer overflow leading to stored XSS. Includes vulnerable app setup, exploit…

Dockerized Go app for testing the CVE-2021-44228 vulnerability

OrangeBadge - Exercise CVE-2018-6574: go get RCE

Web-based adversary emulation platform that orchestrates Atomic Red Team tests across Windows endpoints via Go agents, with MITRE ATT&CK mapping, APT…

📦 Get a clean, ready-to-go Linux box in seconds.

A modular framework for benchmarking LLMs and agentic strategies on security challenges across HackTheBox, TryHackMe, PortSwigger Labs, Cybench,…

Intentionally vulnerable Golang programs exposing web, gRPC, and database/sql flaws for security training, vulnerability discovery, and remediation…

A Highly Accessible and Automated Virtualization Platform for Security Education

The Python Version of our Not Go-ing Anywhere Vulnerable Application

A detailed walkthrough of Billing room exploiting CVE-2023-30258 and escalating via fail2ban misconfig

Hands-on lab demonstrating Apache Struts2 OGNL injection (CVE-2017-5638) with step-by-step system analysis, exploitation, sandbox bypass, and…