
static-code-analysis-helper
Scans project source code across 16 languages to flag dangerous functions linked to SQLi, XSS, SSRF, command injection, weak crypto, and other web…

Scans project source code across 16 languages to flag dangerous functions linked to SQLi, XSS, SSRF, command injection, weak crypto, and other web…

OSWE, OSEP, OSED, OSEE


Proof-of-concept exploit and technical advisory for an Admin+ arbitrary file upload to remote code execution vulnerability in Everest Toolkit…

WPBookit <= 1.0.6 - Unauthenticated Stored Cross-Site Scripting

Bloomberg Memray’s Stored XSS via Unescaped Command-Line Metadata

PHPMailer < 5.2.18 Remote Code Execution exploit and vulnerable container

Bookea-tu-Mesa is vulnerable to SQL Injection

CVE's I found. technical writeups, expolitation examples and fuzzing sessions walkthroughs

This skill helps Claude write secure code and prevent common vulnerabilities.


"Sucosh" is an automated Source Code vulnerability scanner and assessment framework for Python(Flask-Django) & NodeJs capable of performing code…