
raptor
Framework for auditing blockchain ecosystems, identifying smart contract vulnerabilities, and generating structured findings with multi-platform…

Framework for auditing blockchain ecosystems, identifying smart contract vulnerabilities, and generating structured findings with multi-platform…

Educational lab demonstrating JavaScript expression sandbox escape techniques and patch evolution through multiple vulnerable sandbox versions, with…

Yet Another APK Static Analyzer

Memory-free continual learning framework for malware classification using mode connectivity-based interpolation. Supports class-incremental and…

Exploit Title: Node.JS - 'node-serialize' Remote Code Execution (2), Version: 0.0.4, CVE: CVE-2017-5941

Technical Details and Exploit for CVE-2025-50460

Escáner pasivo de seguridad para CVE-2025-55182 que identifica indicadores públicos asociados a Next.js y React Server Components. Realiza…

Django Security Issue (CVE-2025-32873)

ecurity patch for CVE-2023-26136 in tough-cookie 2.5.0 - Prototype pollution vulnerability fix with backward compatibility

CVE-2025-59059: Misattributed RCE in Apache Ranger Static Analysis Correction

Public disclosure for CVE-2023-31584.

C library for parsing XML, patched for CVE-2022-23852, providing stream-oriented XML parsing with handlers for efficient document processing.

Checkov PoC: arbitrary code execution through auto-loaded configuration and unsigned external Python checks.

PoC — frontmatter-driven arbitrary JavaScript execution in Note Toolbar for Obsidian (GHSA-q8cw-3m8c-5pf2, CVE-2026-87002, CVSS 7.0).