
CVE-2019-18935
Nuclei template and validation scripts for detecting CVE-2019-18935, a critical .NET deserialization RCE in Telerik UI for ASP.NET AJAX, with…

Nuclei template and validation scripts for detecting CVE-2019-18935, a critical .NET deserialization RCE in Telerik UI for ASP.NET AJAX, with…

Very rough PoC for detecting/reproducing CVE-2022-0847 (dirty pipe) through random generation of syscalls and differential fuzzing against a model.

In-depth technical analysis and proof-of-concept for CVE-2017-9822, an insecure deserialization vulnerability in DotNetNuke leading to remote code…

🔍 Scan for CVE-2025-55182 vulnerabilities with a hybrid tool that combines static and dynamic analysis for improved security assessments.

Detection for CVE-2025-4427 and CVE-2025-4428

POC for CVE-2025-24813 using Spring-Boot

Automated exploit for CVE-2022-42889 (Text4Shell) with a vulnerable Dockerized app for testing and manual exploitation guidance.

EMBA - The firmware security analyzer

AFL/QEMU fuzzing with full-system emulation.

AI-driven vulnerability discovery and live validation

Burp Suite extension to generate Intruder payloads using Radamsa

Log4j漏洞(CVE-2021-44228)的Burpsuite检测插件

a dart package to analyze CVE-2025-55182 react2shell

Detects exposed React Server Components vulnerable to CVE-2025-55182 via RSC negotiation.

The iOS Security Testing Framework

Metasploitable3 is a VM that is built from the ground up with a large amount of security vulnerabilities.

A pure-python fully automated and unattended fuzzing framework.

A tool that helps you easy trace classes, functions, and modify the return values of methods on iOS platform