
obike
Reverse engineering of the oBike protocol communication (BLE and HTTP)

Reverse engineering of the oBike protocol communication (BLE and HTTP)

Detailed write-up and proof of concept for CVE-2023-41717, demonstrating bypass of Zscaler proxy file download/upload restrictions via HTTP Range…

Proof-of-concept exploit for CVE-2025-69219, demonstrating remote code execution in Apache Airflow Providers HTTP via unsafe pickle deserialization.…

Security Advisory: HTTP Request Smuggling via Unparsed Transfer-Encoding Values (tiny_http)

Reproducer for CVE-2026-40859 — Apache Camel camel-netty-http / camel-vertx-http producer-side unsafe deserialization of HTTP response bodies (RCE)

Security Advisory: HTTP Request Smuggling Enables Front-End Access Control Bypass (rouille)

Firmware security analysis of BD Alaris 8015 infusion pump (CVE-2016-9355). Identified 6 compound vulnerabilities including plaintext Wi-Fi…

Documents CP PLUS EZ-P21 IP camera CVEs: arbitrary code execution via debug feature and improper authentication of HTTP endpoints, with responsible…

One zero-byte QUIC packet is enough to desynchronize HAProxy's backend connection pool and smuggle HTTP requests across unrelated users — even users…

Technical analysis of CVE-2026-24072, a local privilege escalation in Apache HTTP Server mod_rewrite, including root cause, patches, and Dockerized…

Proof-of-concept exploit for CVE-2025-55182, a remote code execution vulnerability in React Server Functions (Next.js). Demonstrates prototype…

Technical research paper analyzing CVE-2024-38476, a critical Apache HTTP Server vulnerability enabling SSRF, information disclosure, and potential…

An issue was discoverd in Overhang.IO (tutor-open-edx) (overhangio/tutor) 20.0.2 allowing local unauthorized attackers to gain access to sensitive…

Minimal reproduction of CVE-2026-22732 — Spring Security HTTP headers silently dropped

Collections of Orange Tsai's public presentation slides.

Grammar-based HTTP/1 fuzzer with mutation ability

Private Nginx Rift ASLR lab, exploit chain, and demo recordings

Stored XSS via User-Agent in Admin Order View in PhocaCart