
bitbucket-test
Investigating CVE-2022-36804

Investigating CVE-2022-36804

Code and data for our paper "Onelogon: Taking over Active Directory Accounts via Netlogon" (WOOT’26).

Whitepaper introducing Error-Based and Boolean Error-Based Blind techniques for SSTI and Code Injection, with universal payloads for six programming…


This repository contains the code and submission detail for the QDay prize challenge by https://www.projecteleven.com/

Challenge handouts, source code, and solutions for UofTCTF 2025

Proof of concept source code and misc files for my CVE-2025-21692 exploit, kernel version 6.6.75

Paper, data and code from Investigating Potential Security Vulnerability Manifestation through Various Analyses & Inferences Regarding Internet RFCs

Writeup and code for CVE-2025-11492, CVE-2025-11493 - RCE in ConnctWise Automate RMM via Adversary-in-the-Middle

PrISM: A Scalable Probabilistic RowHammer Mitigation (ISCA 2026). Ramulator2 source code and evaluation scripts.

This technical research and review is for educational purposes on public code and constitutes Fair Dealing under the Copyright Act (Canada).

Cisco ASA Software and ASDM Security Research

Reverse engineering research and custom firmware for Allwinner V3-based IoT cameras, including firmware parsers, an AVIOCTRL client, and a…


[CVE-2020-1948] Apache Dubbo Provider default deserialization cause RCE

CVE-2025-65637: Logrus Denial of Service Vulnerability