
msiscan
Scanning tool for identifying local privilege escalation issues in vulnerable MSI installers

Scanning tool for identifying local privilege escalation issues in vulnerable MSI installers

ACEshark is a utility designed for rapid extraction and analysis of Windows service configurations and Access Control Entries, eliminating the need…

It's a tool to manage vulnerables packages in your *nix server, in a centralized way

Helps defenders find their WSUS configurations in the wake of CVE-2025-59287

The Intelligent Process Lifecycle of Active Cyber Defenders

The remediation script should set the reg entries described in https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-36884 . The detection…

Microsoft MSHTML Remote Code Execution Vulnerability CVE-2021-40444

Decrypt reversible secrets encrypted using the default hardcoded key related to CVE-2020-9289 on FortiAnalyzer/FortiManager (the only difference with…

CVE-2020-0796 Flaw Mitigation - Active Directory Administrative Templates

BlackLotus aka CVE-2023-24932 Detection/Remediation Scripts for Intune, ConfigMgr, and generic use

Python proof-of-concept for CVE-2026-33032 that inspects nginx status and configs, then demonstrates unauthorized config write with reload to deploy…

centos 6.10 rpm for fix polkit CVE-2021-4034; centos 6.10的rpm包,修复CVE-2021-4034 漏洞

Detects the CVE-2026-42945 rewrite pattern in nginx configs: rewrite with ? in the replacement plus an unnamed capture consumed in the same location

Patch: Template injection RCE (Atlassian Confluence)

Defensive analysis of CVE-2026-9055, an unauthenticated privilege escalation in Amelia WordPress booking plugin. Provides root cause breakdown,…

Python script to test F5 BIG-IP for CVE-2023-46747 and add an administrator account if vulnerable.

Read-only checker for CVE-2026-43284 / CVE-2026-43500 (Dirty Frag) Linux kernel local-root vulns

Technical analysis, root cause breakdown, and non-destructive detection methodology for CVE-2026-63030.