
Creosote
Creosote is our solution to searching for the tarfile vulnerability described by CVE-2007-4559.

Creosote is our solution to searching for the tarfile vulnerability described by CVE-2007-4559.

Static and dynamic analysis tool for detecting malicious code, suspicious binaries, and privacy violations

Kernel-level security engine using eBPF-LSM to enforce file access policies based on process lineage, protecting sensitive data from supply-chain…

Script to handle CVE 2022-42889

Debian build files for icu 74.2 with a patch to fix CVE-2025-5222

A simple script to remove Log4J JndiLookup.class from jars in a given directory, to temporarily protect from CVE-2021-45046 and CVE-2021-44228.

This tool patches the CVE-2021-44228 Log4J vulnerability present in all minecraft versions NOTE THIS TOOL MUST BE RE-RUN after downloading or…

GitHub Actions Pipeline Enumeration and Attack Tool

Do You Know What's In Your Python Packages? A Tool for Visualizing Python Package Registry Security Audit Data

Patched Vue 2.7.16 template compiler with fixes for CVE‑2024‑6783 and CVE-2024-9506

XZ Backdoor Extract(Test on Ubuntu 23.10)

CVE-2026-43813: CloudAttestation enforceEnvironment bypass





jackson-databind 2026 年 11 条安全公告自查:扫源码注解降噪,告诉你真中几条;逐条求交集给出真正到位的版本(2.18.9/2.21.5/3.1.5,不是 advisory 上最常见的 2.21.4) CVE-2026-54515 / CVE-2026-54512
