
masq
Live recon and posture auditing for AI agent infrastructure: scans MCP configs, session logs, and APIs for secrets, poisoned catalogs, and CoT leaks.

Live recon and posture auditing for AI agent infrastructure: scans MCP configs, session logs, and APIs for secrets, poisoned catalogs, and CoT leaks.

Isolated Docker lab and static scanner for CVE-2025-55182, with vulnerable/patched Next.js builds and PoC validation of RSC Flight deserialization.

Script to audit GitHub Action Workflow files for potential vulnerabilities.

Docker labs + defensive scanner for fastjson remote-class-load RCE. fastjson 1.2.66-1.2.83: @JSONType resource probe (CVE-2026-16723). fastjson2…


MCP server for Slither static analysis of Solidity smart contracts

AI-powered vulnerability scanner extension for Burp Suite with multi-provider support (Ollama, OpenAI, Claude, Gemini)

Zero shot vulnerability discovery using LLMs

Analysis of the Reproduction of CVE-2025-30208 Series Vulnerabilities

Markdown XSS leads to RCE in VNote version <=3.18.1




Educational PoC + lab for CVE-2026-63030 + CVE-2026-60137: pre-auth SQLi in WordPress core via REST batch-route confusion

ReactGuard provides framework- and vulnerability-detection tooling for CVE-2025-55182 (React2Shell)

Apache synapse 反序列化 CVE–2017–15708

Browser demo: EJS template injection (CVE-2022-29078) with Seal Security remediation