Léo Grambert
Software Developer
Lyon, France
Software Developer with 8 years of experience. Currently exploring cybersecurity through vulnerability research, CTF competitions, and open-source security tools.
Projects
Loading contributions...
oss-oopssec-store
FeaturedThe first security CTF lab built with React and Next.js. Open you browser and start hacking.
cyber-bot
FeaturedThreat intelligence platform: RSS aggregation, NVD CVE tracking, ENISA EUVD, databreaches, ...
hate-crimes-map
FeaturedThis project aims to visualize hate crime data to bring visibility to crimes that are often invisible or normalized by society.
crack-hash
FeaturedA fast, multi-threaded hash cracking tool written in Rust. This tool performs dictionary attacks against hashed passwords.
CVE Proof of Concepts
| CVE | Description | Stars | Forks | Views | Clones | Links |
|---|---|---|---|---|---|---|
| CVE-2025-55182 This repository contains a POC of CVE-2025-55182, a critical (CVSS score 10.0) pre-authentication remote code execution vulnerability affecting React Server Components, also known as React2Shell. 3 forks 3.3k views 325 clones | This repository contains a POC of CVE-2025-55182, a critical (CVSS score 10.0) pre-authentication remote code execution vulnerability affecting React Server Components, also known as React2Shell. | 12 | 3 | 3.3k | 325 | |
| CVE-2025-29927 This repository contains a POC and an exploit script for CVE-2025-29927, a critical vulnerability in Next.js that allows attackers to bypass authorization checks implemented in middleware. 3 forks 990 views 166 clones | This repository contains a POC and an exploit script for CVE-2025-29927, a critical vulnerability in Next.js that allows attackers to bypass authorization checks implemented in middleware. | 5 | 3 | 990 | 166 |
OSS Contributions
Opensource IDE For Exploring and Testing API's (lightweight alternative to Postman/Insomnia)
A list of web application security
The open source Trello alternative.
The OWASP Vulnerable Web Applications Directory Project (VWAD) is a comprehensive and well maintained registry of all known vulnerable web applications currently available.
Skills
Programming Languages
Web Frameworks
Security
DevOps & Tools
Certificates
Training courses and online certifications
118 certificates
- Analyze and manage IT risks Mar 2026
- Everything You Need to Know About Computer Networks in Just a Few Hours Feb 2026
- Secure your Data with Cryptography Feb 2026
- Raise Cybersecurity Awareness Effectively Feb 2026
- Secure your Network with VPNs and Firewalls Feb 2026
- Conduct Your Cybersecurity Monitoring Feb 2026
- Discover the Basics of Digital Security Feb 2026
- Discover the World of Cybersecurity Feb 2026
- Try Hack Me - Advent of Cyber 2025 Dec 2025
- Try Hack Me - Security Engineer Sep 2025
- Try Hack Me - Web Fundamentals Feb 2025
- Try Hack Me - Jr Penetration Tester Jan 2025
- Try Hack Me - Advent of Cyber 2024 Dec 2024
- Try Hack Me - Complete Beginner Nov 2024
- Try Hack Me - Cyber Security 101 Nov 2024
- Try Hack Me - Introduction to Cyber Security Sep 2024
- Try Hack Me - Pre Security Aug 2024
- Ethical Hacking: Social Engineering Aug 2024
- OWASP Top 10 Nov 2023
- Security for Developers Nov 2023
- Ethical Hacking: the Complete Course Oct 2023
- Use ChatGPT to improve your productivity May 2023
- Ethereum and Solidity: The Complete Developer's Guide Mar 2023
- Discover the world of Information Systems Sep 2022
- Get started with Linux Jul 2022
- Simulate network architectures with GNS3 May 2022
- Design your TCP/IP network May 2022
- Draw up a functional specification Apr 2022
- Design a clickable interface Apr 2022
- Set up your front-end environment Apr 2022