
mininode
Static analysis CLI tool that reduces Node.js application attack surface by constructing dependency graphs and removing unused modules and functions…

Static analysis CLI tool that reduces Node.js application attack surface by constructing dependency graphs and removing unused modules and functions…

FLARE floss applied to all unpacked+dumped samples in Malpedia, pre-processed for further use.

This tool demonstrates the application of fundamental physics discoveries to cybersecurity.

Security scanner for MCP servers. Grades auth, permissions, injection risks, and tool safety. The Lighthouse of agent security.

An LLVM-based instrumentation tool for universal taint tracking, dataflow analysis, and tracing.

A tool for effective testing the binding layer of scripting languages

Detailed disclosure of CVE-2025-67511, a command injection vulnerability in the CAI framework's SSH tool that allows AI agents to be tricked into…

A lightweight tool designed to stop clickfix attacks by using clipboard formatting with execution surface checks

Proof of Concept: CVE-2026-24061 is a critical authentication bypass vulnerability in GNU inetutils-telnetd allowing unauthenticated remote attackers…

An issue was discoverd in Overhang.IO (tutor-open-edx) (overhangio/tutor) 20.0.2 allowing local unauthorized attackers to gain access to sensitive…

Royal APT - APT15 - Related Information from NCC Group Cyber Defense Operations Research

An experimentation and research platform to investigate the interaction of automated agents in an abstract simulated network environments.

The repository that contains the algorithms for generating domain names, dictionaries of malicious domain names. Developed to research the…

Tarfile module directory traversal vulnerability ( with overflow crossed Directory ) --> Lead to Privilege escalation

Project Mantis: Hacking Back the AI-Hacker; Prompt Injection as a Defense Against LLM-driven Cyberattacks

XSS vulnerability in SourceCodester Student Grades Management System (CVE-2025-63892)

Verified vulnerability journey for CVE-2025-8110 (Gogs) and CVE-2025-3248 (Langflow) — risk triage, exploitability verification, verified patches.

This paper is about manual exploitation of android open port vulnerability found in ES file manager. This open TCP 59777 port allows the attacker to…