cve-2026-46331-audit script
CVE-2026-56782 — Gorse <0.5.10 unauthenticated DB dump/restore (admin_api_key fail-open). Lab + PoC, verified e2e.
NIST CVE-2026-0000 Keylogger Analysis
CVE-2026-48907 – Joomla JCE Unauthenticated Remote Code Execution (RCE)
CVE-2026-53753 — Crawl4AI <0.8.7 unauthenticated RCE (AST sandbox escape via gi_frame.f_back). Lab + PoC, verified e2e.
Pure C exploit for CVE-2023-4911 (Looney Tunables). No Python required. Features multi-processing brute-forcing, dynamic calibration, and integrated ELF parser.
CVE-2024-1086 vulnerability
DirtyClone - local privilege escalation (LPE) proof-of-concept targeting a kernel/XFRM-related vulnerability described in the source as CVE-2026-43503
Proof-of-concept exploit for CVE-2024-24824 demonstrating how an arbitrary class loading primitive can be transformed into remote code execution on vulnerable Graylog deployments.
CVE-2026-55200 - Critical libssh2 Remote Code Execution Vulnerability
iCagenda Unauthenticated File Upload to RCE
CVE-2025-0133 Scanner | Palo Alto GlobalProtect XSS Checker
Proof of Concept for the CVE-2026-22226
cve-2026-48907 scanner
Python Proof of Concept for DirtyClone (CVE-2026-43503) - Linux kernel LPE via page-cache corruption
Windows utility that demonstrates user-mode interaction with the vulnerable WiseDelfile64.sys driver and uses CVE-2025-66680 to perform kernel-assisted file deletion.
Goal is to triage well known attacks and learn how security teams quickly respond.
Goal is to triage well known attacks and learn how security teams quickly respond.