
masm32-kernel-programming
masm32 kernel programming, drivers, tutorials, examples, and tools (credits Four-F)

masm32 kernel programming, drivers, tutorials, examples, and tools (credits Four-F)

OSWE, OSEP, OSED, OSEE

DEF CON 31 워크숍 "(In)direct Syscalls: A Journey from High to Low"의 모든 자료를 포함합니다.

CVE-2026-44613


실제 Log4Shell (CVE-2021-44228) 타깃에 대한 전체 수명주기 취약점 관리 — 스캔, 수동 익스플로잇, 네트워크 탐지, 조치 검증. Nessus, Suricata, Wireshark, Docker.

CVE-2021-3156(Baron Samedit)을 위한 교육용 실습 환경으로, Docker화된 취약한 sudo 대상, 익스플로잇 스캐폴드, 카나리 테스트, 근본 원인 분석 및 패치 비교를 포함합니다.

Malware samples, analysis exercises and other interesting resources.

Windows Local Privilege Escalation Cookbook

이 리포지토리에는 Android Exploitation을 위한 Frida 학습용 챌린지 시리즈가 포함되어 있습니다.

REcon 2024에서 2024년 6월 28일에 진행된 Reversing Rust Binaries: One step beyond strings 워크숍의 슬라이드와 파일입니다.

취약한 Flask 복호화 엔드포인트와 키 없이 임의의 암호문을 복호화하는 Python 익스플로잇 스크립트를 사용하여 AES-CBC 암호화에 대한 패딩 오라클 공격을 시연합니다.

CSPTPlayground is an open-source playground to find and exploit Client-Side Path Traversal (CSPT).

nginx 뒤에서 CVE-2019-11043 PHP-FPM RCE를 재현하는 실습형 랩으로, 리버스 터널 지속성, 메모리 포렌식, 네트워크 트래픽 분석을 시연합니다.

Damn Vulnerable MCP Server

실용적인 Windows 악성코드 개발 과정: API hashing, DLL sideloading, shellcode execution, PE manipulation, payload hosting 및 delivery labs.

AI Red Teaming playground labs to run AI Red Teaming trainings including infrastructure.

EDR 에이전트를 종료하고 무력화하기 위한 실습형 DEFCON 워크숍 자료: 실습 환경 구성, BYOVD, 맞춤형 C/C++ 회피 도구, 리버스 엔지니어링.