
CVE-2021-44228---Log4Shell-Analysis
Technical deep dive into Apache Log4j2 JNDI injection vulnerability. Features static code analysis, patch comparison, attack vectors (LDAP/RMI/DNS),…

Technical deep dive into Apache Log4j2 JNDI injection vulnerability. Features static code analysis, patch comparison, attack vectors (LDAP/RMI/DNS),…

Plugin for JADX to integrate MCP server

Security Governance for Agentic AI

Neto | A tool to analyse browser extensions

Pre-execution intent verification for AI agents. Audits what your AI is about to do, not what it says. Zero dependencies, deterministic, hash-sealed.

CVE-2026-25632 — Fix Unsafe JSON Deserialization Leading to Remote Code Execution


Anticipator is an open-source threat detection platform for multi-agent AI systems.

Documenting the internals of Fingerprint Pro's commercial agent, not the open-source FingerprintJS library


Given JSON-like content, The JSON Sanitizer converts it to valid JSON.

CVE-2026-67595 — Embedded malicious JavaScript (spyware) in VaahCMS 2.0.0–2.3.4 official releases. CVSS 8.1. Advisory + detection.

PoC: identify silent security patches before CVE

RTF de-obfuscator for CVE-2017-0199 documents to find URLs statically.

Researching on the vulnrability CVE-2023-26136


A static + runtime security scanner for MCP (Model Context Protocol) servers