
CVE-2021-40113
CVE documentation repository detailing unauthenticated remote vulnerabilities in Cisco Catalyst PON Series Switches ONT, including default credential…

CVE documentation repository detailing unauthenticated remote vulnerabilities in Cisco Catalyst PON Series Switches ONT, including default credential…

Ask the Web Account Manager (WAM) for Entra ID tokens

The DCERPC only printerbug.py version

DCOM in memory and fileless lateral movement techniques through .Net deserilization

Cross-platform interactive shell for Microsoft Defender for Endpoint Live Response

JBoss Autopwn as featured at BlackHat Europe 2010 - this version incorporates CVE-2010-0738 the JBoss authentication bypass VERB manipulation…

Remote Desktop Protocol .NET Console Application for Authenticated Command Execution

Remote operations commands implemented using Beacon Object Files

BOF for Kerberos abuse (an implementation of some important features of the Rubeus).

Collection of tools to use with Azure Applications

Proof-of-concept exploit and analysis for command injection and hardcoded backdoor credentials in D-Link NAS devices, enabling unauthenticated remote…

Updated version for the tool UltraRealy with support of the CVE-2019-1040 exploit

Proof of Concept: CVE-2026-24061 is a critical authentication bypass vulnerability in GNU inetutils-telnetd allowing unauthenticated remote attackers…

Proof-of-concept exploit for CVE-2026-19900, an authentication bypass and remote code execution vulnerability in LB-LINK X-PRO routers, allowing…

Open source smart card tools and middleware. PKCS#11/MiniDriver

wp2shell (CVE-2026-63030 & CVE-2026-60137) - full RCE chain

Serverless AITM Simulation Framework for Entra ID and M365

NextSploit is a command-line tool designed to detect and exploit CVE-2025-29927, a security flaw in Next.js