A few security projects and labs I keep within reach.
- cWee
Focused CVE discovery and analysis tooling built on nvdlib for searching, filtering, and exploring NVD vulnerabilities.
- auditPlayground
Intentionally vulnerable web labs for hands-on exploitation, secure code review, and real-world vulnerability analysis.
- JWack
Experimental JWT security toolkit for exploring implementation flaws, misconfigurations, and practical token-level attack paths.
- susDLL
Research tooling for crafting and analyzing DLLs to study hijacking techniques and Windows load-order abuse.