
CVE-2023-44487-HTTP2-DoS-Rapid-Reset-Exploit
Advanced CVE-2023-44487 HTTP/2 Rapid Reset vulnerability exploitation framework. Features multi-connection concurrent attacks, adaptive rate control,…

Advanced CVE-2023-44487 HTTP/2 Rapid Reset vulnerability exploitation framework. Features multi-connection concurrent attacks, adaptive rate control,…

مجموعة من وحدات Metasploit لإثبات المفهوم لاختبار الاستغلال وما بعد الاستغلال، توفّر حمولات مخصصة ووظائف مساعدة لسير عمل اختبار الاختراق.

وحدة Metasploit تستغل ثغرة حقن الأوامر CVE-2014-3418 في InfoBlox Network Automation لإنشاء مستخدم sudo وتسليم حمولة Meterpreter عكسية.

Metasploit modules in testing

تعرف أن إحدى الإضافات تحتوي على ثغرة استغلال كائنات PHP لكنك تحتاج إلى معرفة أي مكتبة تستخدم؟

CVE-2021-31166: exploitation with Powershell, Python, Ruby, NMAP and Metasploit.

النشرات الأمنية وملفات إثبات المفهوم والاستغلالات التي تم نشرها علنًا بواسطة @pedrib.

Decrypted content of eqgrp-auction-file.tar.xz

إطار عمل معياري لاختبار الاختراق مبني على بايثون للتقييمات الأمنية الآلية والاستغلال وعمليات الفريق الأحمر. يتضمن وحدات لاستطلاع المعلومات وتوليد…

A list of custom Metasploit modules you can use for penetration testing.

A Metasploit auxiliary module that escalates from any low-privileged domain user to full domain compromise by abusing the AD CS enrollment "chase"…

Driver Attack Platform for Linux

استغلال بلغة Python لثغرة Serv-U في بروتوكول SSH (CVE-2021-35211) مع أوضاع حمولة متعددة: stage وexec وdownload-execute، ما يتيح تنفيذ shellcode وحقن…

استغلال تجاوز سعة المخزن المؤقت عن بُعد مع استبدال SEH لـ ALLMediaServer 1.6، مُقدَّم كوحدة Metasploit تستهدف CVE-2022-28381.

PHPGGC is a library of PHP unserialize() payloads along with a tool to generate them, from command line or programmatically.

يحتوي هذا المستودع على تحديثاتي لأداة استغلال إلغاء تسلسل Java المعروفة ysoserial.

مستودع يتتبّع الاستغلالات والثغرات والنشرات الأمنية العامة التي اكتشفتها أو ساهمت في اكتشافها، أو كتبتها أو ساهمت في كتابتها.

مجموعة أدوات استغلال لـ RichFaces