
totp-ssh-fluxer
Take security by obscurity to the next level (this is a bad idea, don't really use this please)

Take security by obscurity to the next level (this is a bad idea, don't really use this please)

Atlassian Jira Seraph Authentication Bypass RCE(CVE-2022-0540)

POC for CVE-2024-10924 written in Python

Python script that tests PAN-OS devices for CVE-2025-0108 authentication bypass by sending crafted HTTP requests and analyzing responses.

Educational demo of CVE-2022-21449 Java ECDSA signature bypass using real and fake JWT tokens to illustrate the vulnerability and its impact on…

ShuckNT is the script of Shuck.sh online service for on-premise use. It is design to dowgrade, convert, dissect and shuck authentication token based…

Trying to tame the three-headed dog.

Validates injected sessions from the CVE-2026-41940 cPanel/WHM authentication bypass exploit, testing endpoints to distinguish patched servers from…

Proof-of-concept exploit for CVE-2026-45332, a broken access control in Automad CMS allowing unauthenticated dump of admin bcrypt hashes and TOTP…

Testing tool for the Mikrotrick exploit (CVE-2026-67276)

Perform a MitM attack and extract clear text credentials from RDP connections

Chatwoot SQL injection in FilterService

It is the details of CVE-2025-45466

ADCS cert template modification and ACL enumeration

A "plugin" for Android Java to allow asking the user about SSL certificates

Snipe-IT < 8.3.7 Mass Assignment Vulnerability Leading to Privilege Escalation

Frida-based proof-of-concept demonstrating authentication bypass in Telegram Android by hooking SharedConfig.checkPasscode to always return true,…

Test tool for CVE-2020-1472