
security-research
Security Research

Security Research


listmonk’s Session Persistence After Password Reset and Password Change

cve-2023-22515的python利用脚本


Fully functional script for brute forcing SSH and trying credentials - CVE-2018-15473

CVE-2025-58434 Proof of Concept

PoC for CVE-2025-25198: automated Host header poisoning test for Mailcow - HTTPS listener, automatic cookie/CSRF handling, captures first reset link.


Weblogic Unrestricted File Upload


One place for all the default credentials to assist the Blue/Red teamers identifying devices with default password 🛡️

PoC of Remote Command Execution via Log injection on SAP NetWeaver AS JAVA CRM

CVE-2019-9053 Exploit for Python 3

XSS via Host Header injection and Steal Password Reset Token of another user
