
RPC-Triage
A zero-symbol static analysis engine that extracts and mathematically ranks the Windows RPC attack surface using an AHP-based risk model.

A zero-symbol static analysis engine that extracts and mathematically ranks the Windows RPC attack surface using an AHP-based risk model.

Socks4a proxy leveraging PIC, Websockets and static obfuscation on assembly level

A small tool I made to dump the export table of PE files. The primary use case was intended for use within DLL proxying.

Mind-Maps of Several Things

Socks4a proxy leveraging PIC, Websockets and static obfuscation on assembly level



CVE-2018-7600 Drupal Drupalgeddon 2 远程代码执行漏洞利用脚本

Toolbox containing research notes & PoC code for weaponizing .NET's DLR

Code execution/injection technique using DLL PEB module structure manipulation

A collection of servers which are deliberately vulnerable to learn Pentesting MCP Servers.

Asana Desktop 2.1.0 on macOS allows code injection because of specific Electron Fuses. There is inadequate protection against code injection through…

Technical study of the CVE-2025-68613 vulnerability in n8n, covering affected versions, laboratory exploration scenario, offensive and defensive…



CVE-2026-63030, CVE-2026-60137, wp2shell scanner

Unauthenticated 0-click RCE exploit for CVE-2024-9932. Exploits an arbitrary file upload vulnerability in the Wux Blog Editor WordPress plugin to…

(CVE-2024-51793) Wordpress Plugin: Computer Repair Shop <= 3.8115 - Unauthenticated Arbitrary File Upload