# bikini/exploitarium

A single archive of public exploit PoCs and vulnerability research writeups. At the time I post these, none have been reported. Feel free to report them yourself and take credit for the CVE if handed out lulz. Please do not abuse these. I do this so to allure people into the field, and I've always found this is the most efficient way.

Repository: https://github.com/bikini/exploitarium
Canonical: https://ross.abutalabs.com/products/exploitarium
Language: Python
License Family: other
Last push: 2026-07-15T23:21:55+00:00

## Health v2 (maintenance only)
Score: 55/100 (v2, computed 2026-09-03T02:20:16.233290+00:00)
- activity 92, release rhythm 35, longevity 5
- inputs: {"age_days": 71, "days_push": 49, "days_rel": null, "gap_med": null, "n_releases_24m": 0}
- flags: no_releases, young, no_license
- formula: round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10)

## Adoption (not part of the score)
Stars 4241, forks 1196 (observed 2026-08-28T04:08:39.543781+00:00)

## What it is
A consolidated archive of public exploit proof-of-concept code and vulnerability research writeups, organized as self-contained folders per finding. It covers PoCs for widely used software such as Firefox, 7-Zip, curl, Docker, and AnyDesk.

## Use cases
- find proof-of-concept exploits for known vulnerabilities
- study real-world vulnerability research writeups
- learn exploit development and fuzzing methodology
- reproduce security bugs in a lab environment
- browse an archive of public CVE PoCs
- research exploitation techniques for popular desktop software

## When to choose
- you need reference PoCs or writeups for security research or education
- you want real examples of memory corruption, RCE, and injection bugs
- you are studying fuzzing workflows and vulnerability discovery

## When to avoid
- you need a maintained security tool or scanner rather than a research archive
- you require a licensed, supported codebase (the repo has no license)
- you cannot legally or ethically handle exploit code in your jurisdiction or environment

## Facets
- artifact type: dataset
- maturity: active
- function: security, penetration-testing
- domain: security, penetration-testing, developer-tools
- platform: cross-platform, python
- tags: exploit-poc, vulnerability-research, cve, archive, proof-of-concept, 0day

## Member repositories
- bikini/exploitarium (main) score 55

## Provenance
- Observed fields: from GitHub, fetched 2026-08-28T04:08:39.543781+00:00.
- Health v2: computed from the inputs above; adoption is never an input.
- Inferred fields (summary, facets, guidance): AI-extracted, prompt v1, taxonomy v1, on 2026-08-29T18:22:14.856602+00:00, confidence not recorded.
  - readme: https://github.com/bikini/exploitarium (fetched 2026-08-28T04:08:39.543781+00:00, sha 845cf3f5dc30)
- Data as of 2026-08-30T08:39:29.467469+00:00.
