

Curated directory of Node.js security tools, static analyzers, vulnerability scanners, and educational resources covering OWASP Top 10, supply chain…

PHPMailer < 5.2.18 Remote Code Execution exploit and vulnerable container

CVE's I found. technical writeups, expolitation examples and fuzzing sessions walkthroughs

Research-only AI watermark robustness toolkit: local reverse proxy strips C2PA/EXIF/XMP, Unicode, image/audio stego, OOXML/PDF metadata, and scans…

Sourcetrail - free and open-source interactive source explorer

OSWE, OSEP, OSED, OSEE



A collection of smart contract vulnerabilities along with prevention methods

A collection of my Semgrep rules to facilitate vulnerability research.

OWASP ASST (Automated Software Security Toolkit) | A Novel Open Source Web Security Scanner.

The Secure Coding Practices Quick-reference Guide from OWASP

Utilize Tai-e to identify the Log4shell (a.k.a. CVE-2021-44228) Vulnerability

CVE-2026-39259

Bloomberg Memray’s Stored XSS via Unescaped Command-Line Metadata