
fortipwn
Forti CVE-2022-40684 enumeration script built in Rust

Forti CVE-2022-40684 enumeration script built in Rust

Exploits for CVE-2020-9376 and CVE-2020-9377

Identity-aware reverse proxy that delivers zero-trust access to internal apps and services via context-aware policy, continuous verification, and no…

Security control plane for LLM agents: allowlists, owner kill switch, PIN sessions, rate limits, prompt-injection detection, and output scrubbing to…

Declarative policy engine that enables authorization and policy enforcement across services, Kubernetes, Terraform, Docker, and APIs using the Rego…

A PoC exploit for CVE-2026-24061 - GNU InetUtils telnetd Argument Injection Authentication Bypass

A remote code execution vulnerability exists in the iControl REST API feature of F5's BIG-IP product. An unauthenticated, remote attacker can exploit…

A tool for secrets management, encryption as a service, and privileged access management

Certificate authority issuing short-lived code-signing certificates tied to OpenID Connect identities, enabling verifiable software supply chain…

JumpServer is an open-source Privileged Access Management (PAM) platform that provides DevOps and IT teams with on-demand and secure access to SSH,…

Apahce-Superset身份认证绕过漏洞(CVE-2023-27524)检测工具

Infisical is the open-source platform for secrets, certificates, and privileged access management.

Scanning for CVE-2020-8193 - Auth Bypass check

Repository for CVE-2023-4800 vulnerability.

Agentic pentest profile for Hermes: 31 playbooks for authorised recon, web/access-control attacks, safe exploit validation, and evidence-driven…

Detailed technical analysis of CVE-2026-47777, a high-severity authorization bypass in Mastodon's Featured Collections federation pipeline, including…

FreeRDP is a free remote desktop protocol library and clients

A reverse proxy like nginx, built on pingora, simple and efficient.