
MCPwnfluence
Information about CVE-2026-27825 & CVE-2026-27826 discovered by Pluto Security and a bash script for identifying vulnerable mcp-atlassian instances…

Information about CVE-2026-27825 & CVE-2026-27826 discovered by Pluto Security and a bash script for identifying vulnerable mcp-atlassian instances…

Proof-of-concept exploit for CVE-2026-21436, demonstrating path traversal in Solus OS eopkg package manager allowing arbitrary file write during…

Post-incident report analyzing the Oracle Cloud SSO/LDAP supply chain attack (CVE-2021-35587). Details the exploitation of legacy server…

Technical analysis and Proof-of-Concept (PoC) for a critical Path Traversal vulnerability via Symlink manipulation in the Node.js 'tar' package…

Educational Python target range simulating CVE-2026-22807, an AI supply chain RCE via TOCTOU in model loading. Includes vulnerable library, PoC…

K8S and Docker Vulnerability Check for CVE-2024-3094


A service that analyzes docker images and scans for vulnerabilities

Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.

A collection of awesome resources related AI security

Security Scanner for Agent Skills

The OWASP DevSecOps Guideline can help us to embedding security as a part of the development pipeline.

safely install npm packages by auditing them pre-install stage

Minimal CVE Hardened container image collection

Software Supply Chain Security Platform

AI-powered Docker security scanner that explains vulnerabilities in plain English. An OWASP Lab Project.

A collection of servers which are deliberately vulnerable to learn Pentesting MCP Servers.

Open-source secret scanner in Rust