Skip to content
#

nodejs-security

Here are 22 public repositories matching this topic...

Defensive static analysis and detection engineering for the 2026 Shai-Hulud npm supply-chain campaign: Sigma/YARA rules, IOCs, ATT&CK mapping, and defender guidance.

  • Updated Aug 4, 2026
  • YARA

Professional TryHackMe CTF walkthrough for Fool's Mate, Revenge, documenting server-side authorization analysis, API enumeration, prototype pollution, JavaScript object inheritance abuse, reward-gate bypass, exploitation methodology, remediation, and portfolio-ready GitHub Pages documentation.

  • Updated Oct 4, 2026

Professional walkthrough of the Do Not Disturb TryHackMe room, demonstrating web application exploitation through NoSQL Injection, Server-Side Template Injection, Remote Code Execution and Linux privilege escalation using debugfs and the disk group. Includes methodology, attack chain, screenshots, mitigations, and GitHub Pages documentation.

  • Updated Sep 22, 2026

Add this topic to your repo

To associate your repository with the nodejs-security topic, visit your repo's landing page and select "manage topics."

Learn more