
Database assessment, SQL injection testing, auditing, encryption, and activity monitoring tools.

A collection of web pages vulnerable to SQL injection flaws

mssqlproxy is a toolkit aimed to perform lateral movement in restricted environments through a compromised Microsoft SQL Server via socket reuse

YARA malware query accelerator (web frontend)

Execution-Layer Security (ELS) for AI agents — policy-enforced shell with audit.

Remotely delete access logs, Windows event logs, databases, and files on target machines using automated scanning or manual attack selection for…

CVE-2025-49844 (RediShell)

Universal mobile devtool for Agents & Humans - control iOS Simulators, Android Emulators, and real devices from a single dashboard and CLI


Version 0.2 - Exploit Time-based blind-SQL injection in HTTP-Headers (MySQL/MariaDB).

SQLite VFS with sub-100ms cold JOIN queries from S3 + page-level compression and encryption

SolarWinds Orion Account Audit / Password Dumping Utility

A C# MS SQL toolkit designed for offensive reconnaissance and post-exploitation.

Next-generation SQL static analyzer written in Rust. 282+ rules. Zero false positives. Security, performance, reliability, cost, compliance, quality.…

Offensive MSSQL toolkit written in Python, based off SQLRecon

Relational database brute force and post exploitation tool for MySQL and MSSQL


Automated tool that hunts for world-readable passwords in Active Directory LDAP databases by leveraging Kerberos authentication and ldapsearch to…