
jankybank
Simple Java Front and Back end with bad log4j version featuring CVE-2021-44228

Simple Java Front and Back end with bad log4j version featuring CVE-2021-44228
This experiment is destinated to demonstrate how the DNS rebinding attack works on an emulated IoT. In the setup, we have a simulated IoT device,…

Microsoft Office Word Rce 复现(CVE-2022-30190)

Demo to show how Log4Shell / CVE-2021-44228 vulnerability works

Sample docker-compose setup to show how this exploit works

This container was made to explain and demonstrate how CVE-2019-15813 (Sentrifugo works)

some works on CVE-2018-19518

PHPMailer < 5.2.18 Remote Code Execution exploit and vulnerable container

An OWASP-aligned intentionally vulnerable platform for learning and testing AI, LLM, RAG, MCP, and Agentic AI security.

Full exploit chain lab and Suricata IDS detection for CVE-2022-30190 (Follina) - MSDT RCE

Exploit Windows server 2019 vulnerable to Zerologon with Garble, Chisel, wp-file-manager vulnerability (have video demo)


CVE-2025-55182 and CVE-2025-66478

To solve CTFS.me problem

PHPMailer < 5.2.18 Remote Code Execution