
Log4Shell-CVE-2021-44228
Hands-on lab for exploiting and understanding Log4Shell (CVE-2021-44228) using Docker, Kali Linux, Burp Suite and log4j-shell-poc. For teaching and…

Hands-on lab for exploiting and understanding Log4Shell (CVE-2021-44228) using Docker, Kali Linux, Burp Suite and log4j-shell-poc. For teaching and…

Script to obfuscate a payload the same way as it was done by the XZ utils attack (CVE-2024-3094)

Introduction to the exploitation of ELF binaries.

Proof-of-concept exploit and technical analysis for a WinRAR path traversal vulnerability enabling code execution via crafted archives with binary…

Exploit for Adobe Acrobat Reader DC heap buffer overflow (CVE-2021-39863) with ASLR/DEP bypass, including root cause analysis and reversed vulnerable…

Lets have fun by digging into a Zyxel router firmware and MIPS Arch

Curated collection of CTF challenge solutions covering binary exploitation, reverse engineering, and system security with detailed write-ups.

Root cause analysis and PoC for a Microsoft SQL Server Stack Overflow Vulnerability by reversing svl.dll.

Lets have fun by digging into a Zyxel router firmware and MIPS Arch

Writeup for Tenda AC15 router firmware rehosting and remote command execution (CVE-2020-10987) exploit replication.

Walkthrough of CVE-2020-15416 buffer overflow exploit for Netgear R7000 router, including QEMU user-mode debugging environment setup and detailed…

Reverse engineering the "A Letter Before Court 4.docx" malicious files exploting cve-2021-40444

Write up exploit failed chain and experience tryin to sell your first nday

Solution for BFS Ekoparty challenge 2019

Repository to index useful tools for CTF's

Automates setup of binary exploitation challenges by patching ELF binaries, fetching matching linkers, unstripping libc, and generating pwntools…