
fuzzilli
Coverage-guided fuzzer for JavaScript engines using a custom intermediate language (FuzzIL) to mutate and generate semantically valid programs,…

Coverage-guided fuzzer for JavaScript engines using a custom intermediate language (FuzzIL) to mutate and generate semantically valid programs,…

Python exploit script and advisory for CVE-2026-66748: authenticated RCE in Camaleon CMS via select_eval custom field, with root cause analysis and…

Reverse engineering research and custom firmware for Allwinner V3-based IoT cameras, including firmware parsers, an AVIOCTRL client, and a…

Kernel exploit for CVE-2026-43499 (GhostLock) targeting Logitech G Cloud (Snapdragon 720G). Includes futex PI race trigger, KASLR bypass via…

Marp slide deck detailing CVE-2025-53770, a SharePoint zero-day vulnerability, with modular slides, custom themes, and build scripts for HTML, PDF,…

Analysis of DataDome's custom obfuscated VM and bytecode format, revealing string encryption, S-box ciphers, and browser fingerprinting signals for…

Custom BTRFS repair tools for severe extent tree corruption where btrfs check --repair fails (segfault, loop, or deadlock)

Full analysis of a never documented before Remote Access Trojan linked to Pjoao1578 toolchain

Domain-specific language compiler for creating arithmetic circuits targeting the RISC Zero zero-knowledge proof system, enabling custom accelerators…

Python-based scanner for CVE-2025-55182, a critical pre-auth RCE in React Server Components. Features vulnerability detection, gadget discovery, and…

Multi-engine framework for unpacking and analyzing VM-protected binaries using dynamic taint tracking, symbolic execution, pattern classification,…

A Writeup for Sleirsgoevy's version of the Exploit Implementation of CVE-2018-4386 by Fire30 called Bad_Hoist

This project generates DNS zonefiles with custom NSEC3 parameters to reproduce and evaluate the attacks in CVE-2023-50868.

Educational walkthrough of CVE-2018-4416, a WebKit JavaScriptCore type confusion vulnerability, with PoC, debugging setup, and analysis of common…