
ExchangeRelayX
An NTLM relay tool to the EWS endpoint for on-premise exchange servers. Provides an OWA for hackers.

An NTLM relay tool to the EWS endpoint for on-premise exchange servers. Provides an OWA for hackers.

CVE-2025-29927: Next.js Middleware Exploit

python2.7 script for JWT generation

CVE-2021-46067 - In Vehicle Service Management System 1.0 an attacker can steal the cookies leading to Full Account Takeover.

Monitors Asterisk authentication logs and automatically bans IPs with repeated failed login attempts using iptables, with configurable thresholds and…

bypass all stages of the password reset flow

Incorrect implementation of an authentication algorithm in Ivanti vTM other than versions 22.2R1 or 22.7R2 allows a remote unauthenticated attacker…

APOLOGEE is a Python script and Metasploit module that enumerates a hidden directory on Siemens APOGEE PXC BACnet Automation Controllers (all…

An Authentication Bypass Using an Alternate Path or Channel vulnerability [CWE-288] affecting FortiOS and FortiProxy may allow a remote attacker to…

Multiple vulnerabilities in the web-based management interface of the Cisco Catalyst Passive Optical Network (PON) Series Switches Optical Network…

Mikrotik 0day Credential Disclosure Scanner


A proof-of-concept script to conduct a phishing attack abusing Microsoft 365 OAuth Authorization Flow

Simple PoC in PowerShell for CVE-2023-23397

Proof-of-concept exploit for CVE-2026-45332, a broken access control in Automad CMS allowing unauthenticated dump of admin bcrypt hashes and TOTP…

Unverified Password Change (CWE-620)

POC for CVE-2018-0114 written in Go

This is poc of CVE-2022-46169 authentication bypass and remote code execution