
commons-text-goat
An intentionally vulnerable webapp to get your hands dirty with CVE-2022-42889.

An intentionally vulnerable webapp to get your hands dirty with CVE-2022-42889.

I was presented with a high-severity alert indicating a potential exploit attempt of CVE-2023-22515, a zero-day vulnerability in Atlassian…

A root tool based on the [CVE-2015-1805 vulnerability](https://access.redhat.com/security/cve/cve-2015-1805) It supports 32 and 64bit, get sys call…

Springboot web application accepts a name get parameter and logs its value to log4j2. Vulnerable to CVE-2021-44228.

OrangeBadge - Exercise CVE-2018-6574: go get RCE

Get your favourite Kali Linux tools on Debian/Ubuntu/Linux Mint

Deprecated - Low Orbit Ion Cannon - An open source network stress tool, written in C#. Based on Praetox's LOIC project. USE ON YOUR OWN RISK. WITHOUT…

Accurately Locate Smartphones using Social Engineering

Android remote administration tool

A simple tool to generate fake web browsing and mitigate tracking

Demo of the URLClassLoader JAR-swapping showing the ability to replace and exploit an already loaded JAR with inner classes

reversing mtk-su


Local Privilege Escalation in polkit's pkexec (CVE-2021-4034)

small writeup on EnterpriseModernAppManager::ProvisionApplication bug

Instant Appointment <= 1.2 — Unauthenticated Arbitrary File Upload to RCE via add_service_front AJAX | CVSS 9.8

Coq-based formal verification of a Linux kernel eBPF verifier vulnerability (CVE-2020-8835) with reproducible build environment and proof artifacts.

CVE-2021-44228