
CS4277-CVE-Path-Traversal-Apache-HTTP-Server
We hope to reproduce CVE-2021-41773 to deepen our understanding of real-world cybersecurity vulnerabilities so that we can be knowledgeable about…

We hope to reproduce CVE-2021-41773 to deepen our understanding of real-world cybersecurity vulnerabilities so that we can be knowledgeable about…

OWASP-maintained Top 10 API security risks document and documentation portal with best practices for building, breaking, and defending APIs.


Nuclear Pond is a utility leveraging Nuclei to perform internet wide scans for the cost of a cup of coffee.

Proof of Concept (POC) for the CVE-2025-25296 vulnerability affecting Label Studio versions prior to 1.16.0

HTTP Request Smuggling

chrome extension to detect next.js sites vulnerable to CVE-2025-55182 (react2shell)




Multi-engine DAST scanner aggregating Nikto, ZAP, Nuclei, SkipFish, and Wapiti for automated web injection vulnerability detection with consolidated…

The OWASP Java Encoder is a Java 1.5+ simple-to-use drop-in high-performance encoder class with no dependencies and little baggage. This project will…

The next generation encrypted file sharing project

CS50 Cybersecurity final project — Palo Alto OAuth token breach (CVE-2024-3400)

📬 Simple, private file sharing. Mirror of https://gitlab.com/timvisee/send

Module-based web vulnerability scanner and bug bounty automation framework with built-in XSS, SSTI, SSRF, and Firebase detection engines. Designed to…

Everything you need about Burp Extension Generation

Runtime patches for algertc/alpr-dashboard: async logger fix and CVE-2025-29927 nginx mitigation