Back to advisories
Code & patches
The defensive half: fix diffs for our advisories and hardening baselines you can apply today. No proof-of-concept, no signatures, no client code.
# hoaxeye — Open Security Drop This is the public, defensive half of hoaxeye's FiveM security research. **What lives here** - `patches/` — the fixes for our published advisories (defensive diffs, not exploits).- `hardening/` — operator-facing configuration baselines you can apply today. **What deliberately does not** - No proof-of-concept or exploit code. Under coordinated disclosure we publish the understanding and the fix, never the weapon.- No detection signatures, no client resource, no model internals — that is the closed half of the platform. Each advisory on the index carries a disclosure status. "Open" means the finding isdocumented here but not yet resolved upstream; treat the hardening baseline as yourinterim mitigation.