
AFL
american fuzzy lop - a security-oriented fuzzer

Collections of Orange Tsai's public presentation slides.

Zero-dollar attack surface management tool

Slides and conference talks from security research covering Windows, virtualization, web, and blockchain exploit techniques, presented at Black Hat,…

TPM vulnerability checking tool for CVE-2018-6622. This tool will be published at Black Hat Asia 2019 and Black Hat Europe 2019

Cisco ASA Software and ASDM Security Research

This repository contains the sources and documentation for the SWAPGS attack PoC (CVE-2019-1125)

Curated collection of proof-of-concept vulnerability exploits and research presented at security conferences such as Black Hat and CODE BLUE.

The great RSA Attacking Toolkit compiled for Windows

A black-box (DAST) security analysis of CVE-2026-34835 focusing on external validation methodology, observable behavior, security impact, and…

CVE-2025-20352 SNMP Exposure Check (onesixtyone + parser)

Example of exploiting CVE-2011-3026 on Firefox (Linux/x86)

CVE-2024-38144 - DoS PoC

Free and Open-Source FRP Remover based on CVE-2022-38694

Black-box exploit for CVE-2025-21574 targeting MySQL servers. Automates credential brute-forcing, anonymous access attempts, and triggers server…

Audit de sécurité Black Box d'un serveur Drupal 7. Démonstration d'une Kill Chain complète : Injection SQL (CVE-2014-3704) ➔ RCE ➔ Reverse Shell ➔…

Black-box penetration test against HackSudo Thor : CVE-2014-6271 Shellshock RCE through Apache mod_cgi, chained with sudo misconfiguration and bash…