
linux-kernel-codex-harness-v2
Provenance-aware Linux kernel vulnerability research harness used in the investigation of CVE-2026-53075

Provenance-aware Linux kernel vulnerability research harness used in the investigation of CVE-2026-53075

Evidence-driven Linux kernel vulnerability research harness used in the investigation of CVE-2026-31720

Evidence-focused malware reverse engineering with deep PE/.NET inspection, Ghidra reconstruction, AI cross-checks, YARA, and ELF debugging

Educational demo of three Claude Code vulnerabilities (hooks bypass, MCP injection, API key exfiltration) with attacker server, MITM proxy, and…

A Python pickling decompiler and static analyzer

Protection against Model Serialization Attacks

Security scanner for AI/ML model files. Detects malicious code, backdoors, and vulnerabilities before deployment

A static + runtime security scanner for MCP (Model Context Protocol) servers

FastGPT Python sandbox escape chain audit tool (CVE-2026-32128 related, v4.14.8 inspect chain)

Live recon and posture auditing for AI agent infrastructure: scans MCP configs, session logs, and APIs for secrets, poisoned catalogs, and CoT leaks.

A small tool I made to dump the export table of PE files. The primary use case was intended for use within DLL proxying.

CLI security scanner built for the agentic era. Detects CI/CD misconfigs, agent permission risks, MCP tool injection, hardcoded secrets, and…

The community's most comprehensive, continuously-updated index of research on Large Language Models for software vulnerability detection — papers…

Read-only WordPress security scanner for HestiaCP servers. Detects wp2shell compromise indicators (CVE-2026-63030 / CVE-2026-60137) across all hosted…

Official code for the ISSTA 2026 paper: Is "Knowing It’s Malicious" Enough? Evaluating LLMs for Fine-Grained Malware Behavior Auditing

[NeurIPS '25] Code for Paper "IF-Guide: Influence Function-Guided Suppression of Harmful Training Data for Reducing LLM Toxicity"

Pre-install security for AI agents, npm packages, and MCP servers. Zero-dep local static analysis; normal scans never execute package code.

AI Smart Contract Security Analysis and PoC Generation Framework