
CVE-2026-21014-CAN-Bus-Frame-Replay-Attack-on-Automotive-ECU
Replays captured CAN bus frames to demonstrate CVE-2026-21014, showing how missing authentication and freshness checks enable unauthorized automotive…

Replays captured CAN bus frames to demonstrate CVE-2026-21014, showing how missing authentication and freshness checks enable unauthorized automotive…

This container was made to explain and demonstrate how CVE-2019-15813 (Sentrifugo works)

This is a concept poc of command and control server implemented over blockchain

Test a network's egress controls with various levels of success and failure.

Red Team AI Benchmark: Evaluating LLMs for authorized offensive-security tasks. Red Team AI Benchmark is a CLI model-evaluation benchmark. It…

Reproduction of CVE-2020-16125, a local privilege escalation in Ubuntu gdm3. Demonstrates how crashing accountsservice triggers gnome-initial-setup…

C# Tool to interact with MS Exchange based on MS docs

just remeber how small mistake in santisize username could give yoy root access to the full machine

End-to-end simulation of detecting a root-less Android Drop Device (Casper) using Wazuh SIEM to capture Layer 7 attacks like Shellshock…

CVE-2025-54100 (CVSS 7.8 High) is a command injection vulnerability in the Invoke-WebRequest cmdlet of Windows PowerShell 5.1. It arises from…

WordPress pentest tool

A list of edge cases that occur in bug bounty programs, conversations on how they should be handled. The goal is to standardise the way that specific…

Delivering PHP RCE (CVE-2024-4577) to the Local Network Servers

Research of exploit options for CVE-2024-53667 and their remediation

PoC Docker lab: chaining file upload bypass + stored XSS to create admin accounts. Educational resource for pen testers.

This repository provides a detailed walkthrough of the *Solar Exploiting Log4j room* on TryHackMe, focusing on exploiting the critical Log4Shell…

It shook the world in 2017 and has evolved into today’s CVE‑2025‑2776. Microsoft still relies on SMBv1, this article will explain how attackers have…

This demonstration video shows how we can control the victim's device by sending the innocent-looking PDF file to the target which actually consists…