
metta
An information security preparedness tool to do adversarial simulation.

An information security preparedness tool to do adversarial simulation.

Exploit for CVE-2024-27198 - TeamCity Server

PoC CVE-2017-5123 - LPE - Bypassing SMEP/SMAP. No KASLR

A simple python script for a firewall rule that blocks incoming requests based on the Spring4Shell (CVE-2022-22965) vulnerability

Study and exploit the vulnerability CVE-2022-21661 that allows SQL Injections through plugins POST requests to WordPress versions below 5.8.3.

Traveller is an Easy Linux machine featuring a Joomla 4.2.7 travel booking website vulnerable to CVE-2023-23752, an unauthenticated REST API…

Chaining CVE-2021-26855 and CVE-2021-26857 to exploit Microsoft Exchange

Intentionally vulnerable Spring app to test CVE-2022-22965

SentinelStream AI: A professional SIEM and SOAR platform featuring real-time threat correlation for CVE-2024-21410 and automated incident response…

Flow Integrity Deterministic Enforcement System. Mechanisms for securing AI agents with information-flow control.

Proof-of-concept exploit for CVE-2026-14669, a PostgreSQL to_char() timezone abbreviation heap buffer overflow enabling RCE through information leak…

Awesome information for WebSockets security research

An interactive wizard front end for IVRE to make creating scans to the database easier.

Poc para explotar la vulnerabilidad CVE-2024-23897 en versiones 2.441 y anteriores de Jenkins, mediante la cual podremos leer archivos internos del…

Unauthenticated arbitrary file read in Flowise (< 2.2.4) via path traversal in getFileFromStorage (storageUtils.ts). Caused by un-sanitized file path…

Scanner for CVE-2024-23897 - Jenkins