
truegaze
Static analysis tool for Android/iOS apps focusing on security issues outside the source code

Static analysis tool for Android/iOS apps focusing on security issues outside the source code


Exploit for CVE-2022-22965 (Spring4Shell) targeting Spring Framework versions vulnerable to remote code execution via classLoader manipulation.

mitigation script by disabling ipv6 of all interfaces

Scans Heroku applications for a critical Rails remote code execution vulnerability (CVE-2013-0333) and identifies unpatched instances requiring…

Incorrect access control in /vfm-admin/admin-panel/view/save-cvs.php in Veno File Manager Project 4.4.9 allows an unauthenticated attacker to extract…

Misconfiguration Manager is a central knowledge base for all known Microsoft Configuration Manager tradecraft and associated defensive and hardening…

A fast, portable, and lightweight COSE + CBOR implementation for embedded systems. Supports PQC, FIPS 140-3, DO-178, and MISRA C. Powered by wolfSSL.

This tool patches the CVE-2021-44228 Log4J vulnerability present in all minecraft versions NOTE THIS TOOL MUST BE RE-RUN after downloading or…

Find interesting files stored on (System Center) Configuration Manager (SCCM/CM) shares via HTTP(s)

This powershell script is intended to be used by anyone looking to remediate the Log4j Vulnerability within their environment. It can target multiple…

GCPGoat : A Damn Vulnerable GCP Infrastructure

This enforces signatures for CVE-2021-44228 across all policies on a BIG-IP ASM device

Advisory detailing active debug code in production Gardyn Home Kit cloud API, exposing development endpoints and embedded credentials, with…

Writeup of a Denial of Service vulnerability in the vBulletin 3.8.7 friends list.

GitLab CI component for Trivy scanning

Detect and remediate misconfigurations and security risks across all your GitHub and GitLab assets

Security checks for your researches