
AIOstack
AI runtime inventory: discover shadow AI, trace LLM calls

AI runtime inventory: discover shadow AI, trace LLM calls

NetScaler ADC/Gateway SAML unsigned-assertion bypass via HTTP-Redirect binding (CTX696939) - root cause analysis + PoC

Scalable threat intelligence platform that enriches observables and files using 200+ analyzers, with built-in GUI, REST API, and automated workflows…

Reflected XSS via search GET Parameter in Phoca Download

get things from one computer to another, safely

Automated pre-analysis tool for Android apps that disassembles samples, extracts properties via configurable pattern matching, and organizes output…

Low-level library for encoding and decoding IA32/Intel64 x86 instructions, exposing APIs for instruction length, operands, categories, control-flow…

Reflected XSS via price_from & price_to Filter Parameters in PhocaCart

Damn Small XSS Scanner

Damn Small SQLi Scanner

Unauthenticated SQL Injection via Attribute Filter in Phoca Cart - CVSS 9.3

Generate polymorphic, position-independent virtual machines (PIVMs) from arbitrary x86/x64 shellcode.

:orange_book: Markdown Templates for Offensive Security OSCP, OSWE, OSCE, OSEE, OSWP exam report

Active Directory security risk assessment tool that evaluates vulnerabilities, misconfigurations, and maturity using a streamlined methodology,…

Offline-first network investigation and response platform for Windows. Turns a pcap or live capture into a full forensic verdict — attack story,…

PoC for CVE-2026-18953 — arbitrary file write (CWE-22) in awslabs.aws-transform-mcp-server's get_resource tool via the savePath parameter

Scans exported Azure domain dumps for plaintext passwords, connection strings, storage keys, and other secrets; generates redacted CSV/HTML reports…

Stack buffer overflow PoC for a hardware wallet USB descriptor parser (CVE-2026-22013), showing return-address overwrite and code execution via…