
DB_Audit_Research
Self-Defeating Audits: reproducible lab showing a low-privilege PostgreSQL role reversibly blinding a trigger-based auditor + poisoning attribution…

Self-Defeating Audits: reproducible lab showing a low-privilege PostgreSQL role reversibly blinding a trigger-based auditor + poisoning attribution…

Structured vulnerability research repo for a Chrome Dawn WebGPU CWE-20 flaw: root cause, patch diff, static verification, severity review, and…

Technical write-up and analysis of PrintNightmare (CVE-2021-1675 / CVE-2021-34527), covering RCE/LPE exploitation, detection via Windows event logs,…

A curated list of AI Security materials and resources for Pentesters, Bug Hunters, and Security Researchers.

Non-weaponized CVE-2016-5195 (Dirty COW) analysis and validation harness with root-cause research, upstream patch review, and safe lab-only PoC for…

Self-referenced local contrast for knowledge-poison detection in retrieval-augmented generation

A curated collection of resources for learning and researching LLM prompt injection attacks, defenses, and security.

This repository contains the complete record of my three-year research journey, covering the project from foundational concepts to advanced-level…

Segmentation Fault-Oriented Programming exploitation technique

Embed multiple secret messages in LLM chat token choices using arithmetic/Discop steganographic coders, with bit-exact decoding and steganalysis…

The Intelligent Process Lifecycle of Active Cyber Defenders

Ressources and papers related to my conferences and work on (un)RASPs. These work is in progress, please be patient :) Don't hesitate to contribute /…

PHP binary bugs advisory

List of unsafe ed25519 signature libs

A list of published research documents

Awesome information for WebSockets security research

Paranoid's library contains implementations of checks for well known weaknesses on cryptographic artifacts.

Cisco ASA Software and ASDM Security Research