
ephemera
Self-hosted SSH Certificate Authority replacing static keys with short-lived certificates, enforcing WebAuthn MFA, RBAC, and tamper-evident audit…

Self-hosted SSH Certificate Authority replacing static keys with short-lived certificates, enforcing WebAuthn MFA, RBAC, and tamper-evident audit…

Ruby On Rails Application For Network Security Monitoring

Simulated 5G gNodeB NAS parser with stack buffer overflow PoC for CVE-2026-23002; a crafted NAS message triggers remote code execution.

Zero-trust sandbox for AI agents with kernel-level filesystem jail, transparent network proxy, and YAML-based policy engine to intercept and control…

Educational Python PoC for a QUIC address-validation bypass that triggers handshake amplification, including vulnerable server simulation and attack…

Vulnerability scanner using Nmap for scanning and correlating found CPEs with CVEs.

Real-time malicious traffic detection system using public blacklists, static malware trails, and heuristic analysis to identify threats across DNS,…

Python simulation of CVE-2026-22012, showing how a missing Final-Unit-Indication in Diameter Credit-Control allows unlimited quota and service bypass…

Simulates CVE-2026-22019, a libcurl HTTP/2 CONNECT tunnel stream-isolation failure, demonstrating cross-stream data injection and response smuggling…