
offensive-ai-compilation
A curated list of useful resources that cover Offensive AI.

A curated list of useful resources that cover Offensive AI.

😱 A curated list of amazingly awesome OSINT

This repository contains validated detection rules for adversary behaviors observed during APT29 simulation. Each rule was tested against the actual…

All the materials for Gareth Heyes' Black Hat talk: CSS: the bomb inside your inbox.

This repository contains the complete record of my three-year research journey, covering the project from foundational concepts to advanced-level…

CVE-2026-13156 Vulnerability Advisory & PoC — Discovered by Huynh Kien Minh (MinhHK).

A collection of awesome platforms, blogs, documents, books, resources and cool stuff about security

Project Mantis: Hacking Back the AI-Hacker; Prompt Injection as a Defense Against LLM-driven Cyberattacks

Detailed CVE-2026-51788 advisory for a DoS vulnerability in cleverange_auth v0.1.10, with technical analysis, CVSS scoring, and mitigation guidance…

Fish Live In Trees

This repository documents CVE-2026-48849, a Stored Cross-Site Scripting (XSS), HTML Injection, and CSS Injection vulnerability discovered in…

CVE-2024-3094 XZ Utils backdoor research - attack surface visualiser, system vulnerability checker, and general Linux CVE assessment tool

Documentation and proof-of-concept for CVE-2026-30502, a reflected XSS vulnerability in OpenKM v6.3.12. Includes technical analysis, root cause,…

CVE-2026-30691: Stored Cross-Site Scripting (XSS) in @cyntler/react-doc-viewer

Published security research repository featuring academic papers on domain hijacking, 2FA bypass, and large-scale spoofing techniques, authored by…

CRLF Email Header Injection in Plunk via raw MIME construction — CVSS 8.5

A lightweight tool designed to stop clickfix attacks by using clipboard formatting with execution surface checks

Coordinated disclosure of CVE-2025-52204: reflected XSS and HTML injection in Znuny OTRS customer.pl endpoint. Includes technical summary, affected…