
cve-2021-33879
GameLoop update MITM

GameLoop update MITM
Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.

Breakdown of a c2-network of chinese beamers - SilentSDK-Analysis

opensource repo for validating agentic AI applications: redteam, behavior, supply-chain, static analysis

The independent security agent for AI-written software. Finds issues, investigates whether they are real, and shows you the evidence. Deterministic…

GitHub Action for Offensive360 SAST scans and SARIF results. See the open-source program for eligibility and setup.

Signing-key abuse and update exploitation framework

Unified security scanner for MCP servers with config, pentest, and repo-scan modes. Generates SARIF reports for CI/CD integration, detects secrets,…

Panthera(P.)uncia - Official CLI utility for Subdomain Center & Exploit Observer.

Repository for CVE-2014-4936 POC code.

AI-native code security auditor on AgentField that proves exploitability with verdicts, traces, and actionable evidence.

Live recon and posture auditing for AI agent infrastructure: scans MCP configs, session logs, and APIs for secrets, poisoned catalogs, and CoT leaks.

CocoaPods RCE Vulnerability CVE-2024-38366

OWASP Autonomous Penetration Testing Standard

Reproducer for CVE-2023-3635 in Okio 2.9.0, demonstrating how React Native's version catalog pins a vulnerable dependency, affecting Android apps.

Debian Lenny Bash packages with cve-2014-6271 patches (i386 and amd64)

Proof-of-concept code for Android APEX key reuse vulnerability

Exploit for CVE-2026-33017, an unauthenticated RCE in Langflow 1.8.1 via the build_public_tmp endpoint, enabling Python code injection through…