
CVE-2025-32433-PoC-Analysis
This is an analysis for CVE-2025-32433 (Erlang OTP SSH Vulnerability). I did not write any of the code, I only wrote comments describing what the…

This is an analysis for CVE-2025-32433 (Erlang OTP SSH Vulnerability). I did not write any of the code, I only wrote comments describing what the…

A compact guide to network pivoting for penetration testings / CTF challenges.


A critical flaw has been discovered in Erlang/OTP's SSH server allows unauthenticated attackers to gain remote code execution. One malformed SSH…

The vulnerability allows an attacker with network access to an Erlang/OTP SSH server to execute arbitrary code without prior authentication.

The OpenSSH client and server are vulnerable to a pre-authentication DoS attack between versions 9.5p1 to 9.9p1 (inclusive) that causes memory and…

MitM attack allowing a malicious interloper to impersonate a legitimate server when a client attempts to connect to it

Script for checking CVE-2024-6387 (regreSSHion)

CVE-2018-10933 - libssh Authentication Bypass

A fast and convenient TUI file browser for remote servers

Proof of concept python script for regreSSHion exploit.

Vulnerability Overview CVE-2023-38408 affects OpenSSH versions < 9.3p2 and stems from improper validation of data when SSH agent forwarding is…

Proof of concept for CVE-2016-8858



This project simulates a real-world attack-and-defend scenario across two virtual machines. You will exploit a critical pre-authentication RCE…

SSH server auditing (banner, key exchange, encryption, mac, compression, compatibility, security, etc)

Audits SSH servers for weak Diffie-Hellman key exchange groups by testing multiple client configurations, identifying Logjam-vulnerable endpoints…