
CVE-2023-4357
Reproduction case for CVE-2023-4357, a Chrome XXE vulnerability enabling arbitrary file read, with proof-of-concept files and a hosted test page.

Reproduction case for CVE-2023-4357, a Chrome XXE vulnerability enabling arbitrary file read, with proof-of-concept files and a hosted test page.

Deprecated Chrome plugin that checks websites for the Heartbleed vulnerability (CVE-2014-0160) via an API, with linked exploit code for educational…

Chrome extension that automatically checks visited sites for vulnerability to OpenSSL CVE-2014-0160

A Chrome extension that demonstrates bypassing Widevine L3 DRM


Never forget where you inject.

This extension will help you to detect GET/POST based XSS vulnerability in any website easily

Discover hidden debugging parameters and uncover web application secrets

Instant access to you bug bounty submission dashboard on various platforms + publicly disclosed reports + #bugbountytip

Proof-of-concept exploit for CVE-2022-3656, a Chrome/Chromium vulnerability enabling theft of sensitive files like encrypted wallets and cloud…

Passive recon & attack surface mapper — zero requests sent


Guardian Code: A Script to Uncover CVE-2024-5274 Vulnerabilities

Heartbleed


Proof-of-concept exploit for CVE-2017-3078, a memory corruption vulnerability in Adobe Flash Player ATF module enabling arbitrary code execution on…

Proof-of-concept for reflected XSS (CVE-2024-34582) in Sunhillo Rici5k/Sureline web servers via the userid_change parameter in /cgi/usrPasswd.cgi.

Educational presentation analyzing CVE-2021-21193, a use-after-free vulnerability in Google Chrome's Blink engine, including exploitation details and…