


An alignment auditing agent capable of quickly exploring alignment hypothesis


A PoC exploit for CVE-2021-43798 - Grafana Directory Traversal

Isolated AD/Linux attack lab: exploited CVE-2007-2447 via Metasploit, detected with Wazuh SIEM mapped to MITRE ATT&CK (T1190, T1059)

Vulnerability detection scripts for the n8n product.

Exploit for CVE-2022-46169 in Cacti, enabling unauthenticated remote code execution via crafted HTTP requests to remote_agent.php.

A fork and successor of the Sulley Fuzzing Framework

Java-based framework for systematic fuzzing and analysis of TLS libraries. Enables arbitrary protocol message crafting, modification, and testing of…

Test and exploit STUN/TURN servers for misconfigurations, enabling internal network pivoting via SOCKS proxy, memory leak attacks, and internal port…

Automated vulnerability tester for Wi-Fi clients and access points, detecting FragAttacks fragmentation/aggregation flaws through frame injection,…

Vulnerability scanner using Nmap for scanning and correlating found CPEs with CVEs.

Network protocol fuzzer that replays PCAP traffic through a mutational engine (Radamsa) to quickly discover vulnerabilities in target hosts via…


Web interface for Suricata ruleset management, threat hunting, and rule tuning with multi-source feed aggregation, transformation, and activity…

vulnerability scanner tool using nmap and nse scripts

CVE-2020-16898 (Bad Neighbor) Microsoft Windows TCP/IP Vulnerability Detection Logic and Rule

Code and data for our paper "Onelogon: Taking over Active Directory Accounts via Netlogon" (WOOT’26).