Security Advisory: Unauthenticated Memory Leak Leads To Memory Exhaustion (TinyWeb)
Security Advisory: Unauthenticated NULL Pointer Dereference Crashes the Server (TinyWeb)
Security Advisory: Unauthenticated Path Traversal Allows Arbitrary File Read (TinyWeb)
Security Advisory: Insufficient Access Controls Allow for Unauthorized File Downloads (Let's Chat)
Security Advisory: Insufficient Access Controls Allow for Unauthorized Room Deletion (Let's Chat)
Security Advisory: Unchecked Room Lookup Leads to Server Crash (Let's Chat)
基于内核漏洞的本地提权适配,集成嵌入式 KernelSU 。编译生成`preload.so`;触发成功后会以 `late-load` 模式(越狱模式)启动 KernelSU。支持(xbl_config.img / vendor_boot.img) + boot.img 生成target.h Local privilege escalation adaptation based on a kernel vulnerability, integrating embedded KernelSU. Compiles and generates `preload.so`; , KernelSU will be started in `late-load` mode
A C-based Linux security utility for detecting, safely verifying (Proof of Concept), and mitigating CVE-2026-64600 (RefluXFS). It provides kernel vulnerability assessment, XFS reflink detection, a safe race-condition PoC, and layered mitigation using SystemTap and XFS hardening.
CVE-2026-43499 research port for Galaxy S24 Ultra SM-S928U1 DZF2 (in progress)
Adding --insecure to skip ssl
Exein Pulsar CVE-2026-52504
SAML Single Sign On <= 5.4.4 - Unauthenticated Authentication Bypass via SAMLResponse Parameter
WPForms Pro <= 1.10.1.1 - Unauthenticated Arbitrary File Write via Chunked Upload Init/Finalize Ordering
CVE-2026-58480 / CVE-2026-15158 — Unauthenticated RCE in Blocksy Companion Pro < 2.1.47 (300K+ installs). Pre-auth arbitrary file upload via double-extension bypass.
Docker-based isolated proof-of-concept lab for analysing CVE-2021-44228 (Log4Shell) for the COMP6441 Security Engineering project.
Auth Bypass in inetutils-telnetd
Unauthenticated RCE version-pinned proof of concept + mass scanner for WatchGuard Fireware CVE-2025-9242.
👻 CVE-2026-54121 - Best CertiGhost AD CS Multi-Exploit Framework ⚡Weaponized tool with rogue DC/LDAP servers, certificate abuse, PKINIT hash extraction. Features: detect safe check, exploit full multi-threaded. 🛡️ CVSS 8.8 High - Use Ethically, Stay Legal. 🔒
CVE-2026-32194 - Draft or Todo
Security Advisory for CVE-2026-51564