#1DNS reconnaissance, monitoring, tunneling detection, and DNS security analysis tools.
Kitploit recommended

A free, open-source, multi-lingual, template-based VDP policy, safe harbor clause, securitytxt, and DNS Security TXT generator.
Scans NTP servers for CVE-2013-5211 NTP DDOS amplification vulnerability.

This Powershell Script is checking if your server is vulnerable for the CVE-2020-1350 Remote Code Execution flaw in the Windows DNS Service

CVE-2024-23692

Zeek script to detect servers vulnerable to CVE-2020-13777

Proof-of-concept exploit for CVE-2018-5740, a denial-of-service vulnerability in BIND DNS server triggered by a crafted DNAME query, with…

Cookie-based authentication vulnerability on Tk-Rt-Wr135G

Python-based exploit for CVE-2004-0789 targeting DNS servers with configurable request flooding for denial-of-service testing.

The issue only affects nginx if the "resolver" directive is used in the configuration file. Further, the attack is only possible if an attacker is…

Vulnerability as a service: showcasing CVS-2015-5447, a DDoS condition in the bind9 software

Proof-of-concept exploit for CVE-2022-24644, demonstrating unauthenticated remote code execution via DNS spoofing against KeyMouse Windows 3.08…

Proof-of-concept for a critical buffer overflow in Kemp LoadMaster's DNS handling, causing remote denial-of-service via crafted DNS requests.

Exploit code for CVE-2015-5477 POC

Knot Resolver CVE-2018-10920 / DO NOT ABUSE

Generate the poc for CVE-2026-4893: broken EDNS Client Subnet validation.

Registry-based mitigation script for CVE-2020-1350 Windows DNS Server RCE vulnerability, applying Microsoft's recommended workaround without server…

Plan v3 US-6: coredns-style fork fixture for Scanner E2E (CVE-2023-39325)

Proof-of-concept exploit for CVE-2015-7547, a glibc getaddrinfo() stack-based buffer overflow. Includes server and client components to trigger the…