
1day-archive
Technical deep-dives and root cause analyses of recently disclosed CVEs - reverse engineering patches, building proof-of-concepts, and documenting…

Technical deep-dives and root cause analyses of recently disclosed CVEs - reverse engineering patches, building proof-of-concepts, and documenting…

Curated study guide for OSCE3 certifications (OSWE, OSEP, OSED, OSEE) covering web exploitation, post-exploitation, payload development, lab setups,…

CVE-2023-22518 exploit analysis for Atlassian Confluence Server covering setup, JAR diffing, root cause, and unauthorized restore to regain admin…

Exploit for Sagemcom F@ST 3890 cable modem implementing Cable Haunt vulnerability to achieve remote code execution via WebSocket-based buffer…

Step-by-step penetration testing walkthrough for a HackTheBox Linux box: API enumeration, vertical privilege escalation, OS command injection,…

Converts binary Thrift protocol messages to/from human-readable JSON for manual analysis and tampering, with support for integration into Burp and…

Exploit chain for Safari + macOS exploiting JIT type confusion, launchd sandbox escape, and XNU IPC MitM for kernel code execution.

Proof-of-concept exploit and vulnerability disclosure for HiSilicon hi3520d DVR/NVR devices. Demonstrates RCE via web interface, backdoor…

Proof-of-concept exploit for PHPStudy backdoor with DLL detection, remote command execution via HTTP Accept-Charset header, and embedded C2 payloads…

Exploit implementation for CVE-2026-33439, a pre-authentication Java deserialization RCE in OpenAM. Includes detailed vulnerability analysis, gadget…

Intentionally vulnerable Android banking app for practicing mobile security testing. Covers OWASP Mobile Top 10 with hardcoded credentials, insecure…

Hands-on lab demonstrating Log4Shell (CVE-2021-44228) exploitation using Docker, Kali Linux, Burp Suite, and log4j-shell-poc. Designed for controlled…

Step-by-step TryHackMe walkthrough for exploiting the Log4Shell vulnerability (CVE-2021-44228) to achieve remote code execution and capture flags.

Post-authentication command injection exploit for Wavlink AC1200 routers. Leverages improper input sanitization in adm.cgi to execute arbitrary shell…

Static analysis of the DarkSword iOS WebKit exploit chain — delivery, staging, and CVE breakdown (CVE-2025-31277, CVE-2025-43529)

Proof-of-concept exploit for CVE-2026-6307, a V8 TurboFan type confusion enabling addrof/fakeobj primitives for sandbox escape and remote code…

Technical analysis and proof-of-concept exploit for a command injection vulnerability (CVE-2025-60854) in D-Link AX1500 routers, enabling…

The graph functionality of DeimosC2 v1.1.0-Beta is vulnerable to Stored Cross-Site Scripting (XSS), allowing the theft of session cookie and…