PortSwigger Web Security Academy Lab Notes This repository contains my personal lab notes and reports for the PortSwigger Web Security Academy. The...
Assembly Code Compilation & Shell Generation Follow the steps below to compile your assembly code and generate the shell: 1. Compiling the Assembly...
CVE-2026-45777 CVE-2026-45777 PoC...
In March, we wrote that identity security has become the new pressure point for modern cyberattacks. Since then, AI has only increased that pressur...
We are excited to share that **Microsoft has been named a Leader in****The Forrester Wave™: Extended Detection and Response Platforms, Q2 2026**. M...
JimuReport versions 2.3.4 and below are vulnerable to remote code execution due to improper handling of Aviator expressions. The /jmreport/executeS...
In JazzCore python-pdfkit 1.0.0, the from_string method enables the execution of JavaScript code within the context of the server application and t...
Impact: undici's ProxyAgent silently drops the requestTls option when configured with a SOCKS5 proxy URI (socks5:// or socks://). The target HTTPS ...
Impact: undici's cookie parser in parseSetCookie percent-decodes cookie values via qsUnescape, turning encoded sequences like %0D%0A, %00, %3B, and...
Impact: Undici's cache interceptor incorrectly classifies some responses as cacheable when the upstream Cache-Control header uses whitespace-padded...
AI-powered asset discovery, dark web monitoring, CVE alerting, and vulnerability scanning — all in one platform.