
coreruleset
Generic attack detection rule set for web application firewalls, protecting against OWASP Top Ten and common vulnerabilities with minimal false…

Generic attack detection rule set for web application firewalls, protecting against OWASP Top Ten and common vulnerabilities with minimal false…

Go-based Web Application Firewall library compatible with ModSecurity SecLang rules and OWASP Core Rule Set v4, providing real-time HTTP traffic…

Security Advisory: Unauthenticated NULL Pointer Dereference Crashes the Server (TinyWeb)


Grafana scanner with all public CVEs that I collected in one script to make grafana testing easier

Pivotal CRM's patch for an initial deserialization vulnerability was incomplete. The fix switched from BinaryFormatter to JSON.NET but left…


The Social-Engineer Toolkit (SET) repository from TrustedSec - All new versions of SET will be deployed here.


The User Registration & Membership WordPress plugin before 4.1.2 does not prevent users to set their account role when the Membership Addon is…

[First-Blood-XO] React Server Component endpoint vulnerable to CVE-2025-55182 (RCE) → enumerated SUID binaries → /usr/bin/perl had SUID set → used…


We've set up an environment to test CVE-2025-57833. This environment was built using AI, so it's subject to ongoing modification.

PoC for CVE-2025-22131

POC exploit for CVE-2025-33053 (external control of file execution path in URL file)