
M365-Assess
290+ Automated checks across 14 compliance frameworks, interactive HTML report, no data leaves your machine.

290+ Automated checks across 14 compliance frameworks, interactive HTML report, no data leaves your machine.

Master the art of cloud exploitation. A specialized resource for offensive security researchers and red teamers focused on weaponizing…

AISec Plus Week 1 threat write-up — EchoLeak (CVE-2025-32711), zero-click indirect prompt injection in Microsoft 365 Copilot.


CVE affecting Git prior to versions 2.39.2, 2.38.4, 2.37.6, 2.36.5, 2.35.7, 2.34.7, 2.33.7, 2.32.6, 2.31.7, and 2.30.8.

Untitled Goose Tool is a robust and flexible hunt and incident response tool that adds novel authentication and data gathering methods in order to…

Proof-of-concept and analysis for CVE-2025-32711

HUSKY – Products Filter Professional for WooCommerce plugin for WordPress is vulnerable to Local File Inclusion (LFI)

HUSKY – Products Filter Professional for WooCommerce plugin for WordPress is vulnerable to Local File Inclusion (LFI)

Exploit for CVE-2017-17562 vulnerability, that allows RCE on GoAhead (< v3.6.5) if the CGI is enabled and a CGI program is dynamically linked.

Standalone Python 3 exploit for CVE-2017-17562