Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
CVE-2025-32433 — Security research on Erlang/OTP SSH CVE-2025-32433. | Kitploit
Tools/GitHubGitHub/darses/cve-2025-32433
Vulnerability AnalysisExploitationIDS/IPS EvasionNetwork SecurityPenetration TestingIntrusion DetectionArchived
GitHubdarses/cve-2025-32433

CVE-2025-32433

Security research on Erlang/OTP SSH CVE-2025-32433.

View Repository
31 year agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

Security research on Erlang/OTP SSH CVE-2025-32433

Python exploit Proof-of-Concept CVE-2025-32433 Unauthenticated Remote Code Execution in Erlang/OTP SSH. I also have a banner grabbing Nuclei template and a Nuclei RCE check.

The Suricata and Zeek IDS logs are in order based on a succesful Paramiko attack, two regular OpenSSH_9.8 connections without attack, two succesful attacks using ProDefense/CVE-2025-32433 and one succesful attack using CVE-2025-32433.yaml by iamnoooob,rootxharsh,pdresearch. Suricata ran with only my own custom rules in suricata.rules.

The Suricata rules only detect unencrypted channel open/request messages, which are assumed to be sent unauthenticated.

I have not tested the rules against realistic traffic logs.

HASHH

  • a42d62b326c107401e08c1ee316f28b6 CVE-2025-32433.yaml by iamnoooob,rootxharsh,pdresearch
  • ca3cc8a7d31514fa9b48636eaec05a78 ProDefense/CVE-2025-32433
  • a2de0f306611e0957be704f5b0e35a82 Paramiko script
Download Tool