
nullorigin
Research-only AI watermark robustness toolkit: local reverse proxy strips C2PA/EXIF/XMP, Unicode, image/audio stego, OOXML/PDF metadata, and scans…

Research-only AI watermark robustness toolkit: local reverse proxy strips C2PA/EXIF/XMP, Unicode, image/audio stego, OOXML/PDF metadata, and scans…

A list of awesome penetration testing tools and resources.

Curated catalog of Solidity smart contract vulnerability patterns with categorized examples, prevention methods, and LLM-optimized references for…

OSWE, OSEP, OSED, OSEE

Create useful, lightweight static analyses using open source tools + a tiny bit of your code

Clickbait. The CVE is AI slop.

Bloomberg Memray’s Stored XSS via Unescaped Command-Line Metadata


PHPMailer < 5.2.18 Remote Code Execution exploit and vulnerable container

Bookea-tu-Mesa is vulnerable to SQL Injection


SyncShield - Browser Extension to Detect Unsafe Rsync Commands (CVE-2018-5764)

Fix prototype pollution vulnerability (CVE-2023-26136) for tough-cookie package

CVE-2026-39259

The Secure Coding Practices Quick-reference Guide from OWASP

BianryNinja plugin for identifying vulnerabilities in decompiled binaries with both programmatic scans and LLM support.

Utilize Tai-e to identify the Log4shell (a.k.a. CVE-2021-44228) Vulnerability