
WordPressMassExploiter
[discontinued] Mass exploiter of CVE-2015-1579 for WordPress CMS

[discontinued] Mass exploiter of CVE-2015-1579 for WordPress CMS

Browser demo: EJS template injection (CVE-2022-29078) with Seal Security remediation

Learn how I found my first two CVEs by pure accident.

The vulnerable application that will teach you how to hack WebSockets

CVE-2026-0073 is an RCE with a CVSS severity score of 8.3, and here we will explain how it works.

Technical analysis and educational resource for CVE-2026-41940, covering root cause, scanner behavior, prevention, mitigation, IOC hunting, and VaPT…

Proof-of-concept for CVE-2026-25940 demonstrating embedded JavaScript execution via crafted AcroForm radio button appearances in PDF viewers, with…

Analyzes CVE-2021-42948, a session token exposure vulnerability in HotelDruid, demonstrating how GET parameters leak session IDs and enable session…

Proof of concept for stored HTML injection in RISE CRM, demonstrating how authenticated users can inject malicious HTML into invoices and messages,…

I Found a Zero-Day Vulnerability in langchain — Here’s How It Went

I Found a Zero-Day Vulnerability in OpenClaw — Here’s How It Went

Analyzes CVE-2024-38998, a prototype pollution vulnerability in requirejs 2.3.6, demonstrating how malicious config inputs can lead to DoS, RCE, or…

A simple program to demonstrate how Log4j vulnerability can be exploited ( CVE-2021-44228 )

Summary of Cyber Security interview questions I have been through, hope this helps

Tips on how to write exploit scripts (faster!)

how to look for Leaked Credentials !

Educational CVE-2026-11107 demo with vulnerable Flask API and exploit script, showing how predictable UUIDv1 identifiers enable insecure direct…

Burp Plugin to Bypass WAFs through the insertion of Junk Data