

Personal Access Token (PAT) recon tool for bug bounty hunters, pentesters & red teams

Discover input surfaces and security issues in compiled .NET assemblies — without running them.

PoC for CVE-2021-43557






Lightweight Python library for obfuscating JWT payload values using XOR encryption with timestamp-based keys, preventing plaintext decoding of…

PoC for CVE-2026-71554 - h2 duplicate Host header request smuggling primitive (fixed in 4.4.1)


Secure fork of Startklar Elementor Addons. Patched CVE-2024-5153 & File Upload vulnerabilities.

Appspec YML and YAML leaks


