
CVE-2023-38434
Proof of Concept for CVE-2023-38434

Proof of Concept for CVE-2023-38434

HikCentral Professional - Pre-Auth License ActiveCode Leak

Technical analysis and proof-of-concept for CVE-2026-3008, a format string injection in Notepad++ 8.9.3 via nativeLang.xml, enabling denial of…

Local risk assessment script for CVE-2026-42945 (nginx-rift). Checks version, vulnerable rewrite+set config, ASLR status, and compile hardening to…

An app demo for test android webview security issue: CVE-2012-6636

Technical dissection of CVE-2026-0628, a Chromium WebView privilege escalation vulnerability, including root cause analysis, PoC exploit, detection…

Critical CVE-2025-4322 exploit for Firefox on Windows enabling sandbox escape and arbitrary code execution. Includes download link and technical…

🔗 Lightweight security orchestrator mobile application for URI vetting, providing a unified, multi-engine interface to aggregate and validate link…


CVE-2023-43955

CVE-2025-0411 7-Zip Mark-of-the-Web Bypass

Cleartext Transmission of Sensitive Information in EagleEyes Lite Android Application


A Chrome extension that demonstrates bypassing Widevine L3 DRM

The reverse-engineering expert agent: plans its own analysis path, derives every fact from raw evidence, and converges under mechanical verification…

Link sources to sinks in C# applications.

Extract endpoints from apk files.

PoC for CVE-2026-78997, a Universal XSS in UC Browser for Android. Includes a crafted URL builder, a callback-dispatch oracle, and Frida hooks to…