
CVE-2026-48282-coldfusion-rds-detection
Laboratory validation of CVE-2026-48282 in Adobe ColdFusion RDS with arbitrary CFM file write, code execution, auditd/PCAP evidence, event timeline…

Laboratory validation of CVE-2026-48282 in Adobe ColdFusion RDS with arbitrary CFM file write, code execution, auditd/PCAP evidence, event timeline…

Validates CVE-2026-48908 in Joomla SP Page Builder with unauthorized icon upload leading to PHP code execution. Includes auditd/PCAP evidence, event…

cve-2026-46331-audit script

This repo has a blog post about my analysis for CVE-2018-19987 an authenticated OS command injection affecting multiple D-Link routers

A structured explanation of CVE-2026-31431 (Copy Fail), connecting the three kernel changes that introduced the vulnerability and enabled its…

Critical path traversal to RCE vulnerability in Jellyfin Media Server (CVSS 9.9). Includes proof-of-concept exploit, technical analysis, and…

Root-cause analysis of CVE-2026-54107: a use-after-free in Windows win32kfull.sys with race condition debugging, static analysis, MSRC triage…


Speculative Load Hazards Boost Rowhammer and Cache Attacks - CVE-2019-0162 -

Gemini 2.5 Pro nf_tables Red Teaming Case Study (CVE-2023-32233) — LLM Safety Alignment & Responsible Disclosure

GIT vulnerability | Carriage Return and RCE on cloning

A Proof Of Concept for CVE-2025-40019


Proof-of-concept exploit for CVE-2025-32463, a local privilege escalation in sudo 1.9.14-1.9.17 via chroot misconfiguration and malicious NSS library…

PoC for CVE-2025-48384

A brief report on CVE-2016-4117 (A vulnerability in Adobe Flash)

Academic study project analyzing CVE-2021-4034 (PwnKit), a local privilege escalation in polkit's pkexec, including vulnerability analysis, exploit…

CAWODOG is a proof-of-concept project demonstrating how to protect Python-based AI models deployed on offline industrial machines. Across three…