
Kaspersky_CVE-2024-3094
Security review of CVE-2024-3094 (XZ Utils backdoor) including threat modeling, static/dynamic code analysis, fuzzing with AFL++, and a…
code-analysisdynamic-analysis-sandboxingeducation+7

Security review of CVE-2024-3094 (XZ Utils backdoor) including threat modeling, static/dynamic code analysis, fuzzing with AFL++, and a…

Payload generator and proof-of-concept exploit for CVE-2018-12533 (Richfaces deserialization/EL injection) with Docker-based vulnerable environment…

Research environment and validation scripts for evaluating deserialization behaviors in MLflow and MLServer.

An LLVM-based instrumentation tool for universal taint tracking, dataflow analysis, and tracing.

Serverless Functions for establishing Reverse Shells to Lambda, Azure Functions, and Google Cloud Functions