
CVE-2026-32710
Heap OOB write in MariaDB JSON_SCHEMA_VALID() → persistent privilege escalation (lab-assisted)

Heap OOB write in MariaDB JSON_SCHEMA_VALID() → persistent privilege escalation (lab-assisted)

Phase C&C Blind SQL Injection

parsing search results from startpage search engine (based on google.com results)

使用burp自动检测CVE-2025-55182 Next.js RCE 漏洞

Corelight-Ansible-Roles are a collection of Ansible Roles and playbooks that install, configure, run and manage a variety of Corelight, Suricata and…

Spring Cloud Gateway Actuator API SpEL Code Injection (CVE-2022-22947)

CVE-2019-14537 PoC

Arbitary Code Execution in Unsecured Apache Spark Cluster

Cryptographically verifiable web archiving. Playwright capture → SHA-256 Merkle hash → Bitcoin-anchored OpenTimestamps → permanent Arweave storage.

Integrate Google Drive <= 1.1.99 - Missing Authorization via REST API Endpoints

An implementation of F5's `mcp` protocol, including MitM tooling to sniff traffic while vuln hunting

Potential Integer Overflow Leading To Heap Overflow in AMD KFD.

Exploit used against the Netgear R6700v3 during Pwn2Own Austin 2021

Double-Free BUG in WhatsApp exploit poc.

Vulnerable web application to test CVE-2021-44228 / log4shell and forensic artifacts from an example attack

PlaceOS authentication service and API gatekeeper.

Check list of URLs against Log4j vulnerability CVE-2021-44228

PHPMailer < 5.2.18 Remote Code Execution Exploit