
AWS-Key-Hunter
[Just for fun] Find exposed AWS keys (VALID KEYS ONLY) on github

[Just for fun] Find exposed AWS keys (VALID KEYS ONLY) on github

Code viewer and searcher for manual code review. Features multi-instance file browsing, inline note keeper, and grep-like search to assist security…

Extract URLs, paths, secrets, and other interesting bits from JavaScript

PoC reproducer demonstrating HTTP header injection in Apache Camel camel-irc (CVE-2026-49097) that allows message redirection and information…

Black-box WordPress vulnerability scanner that detects security issues, enumerates users, brute-forces logins via XMLRPC, and performs static PHP…

Non-destructive WordPress exposure scanner and authorized PoC exploit tool for CVE-2026-63030/CVE-2026-60137. Features version fingerprinting, blind…

Asset-wide detection tool for identifying jsPDF usage related to CVE-2025-68428 Detection only — no exploitation

CVE-2025-13339 disclosure for unauthenticated arbitrary file read vulnerability in Hippoo Mobile App for WooCommerce plugin via path traversal in…

Python script to detect CVE-2018-16858 vulnerability in target systems, enabling rapid identification and assessment of this specific security flaw.

Proof-of-concept exploit for a path injection vulnerability in OpenPLC-v3 enabling arbitrary file read via unsanitized command-line arguments,…

Nuclei template for detecting CVE-2025-53690 deserialization vulnerability in Sitecore XM/XP, enabling automated version fingerprinting and…

Python exploit script for CVE-2025-2294, an unauthenticated Local File Inclusion vulnerability in WordPress Kubio AI Page Builder ≤ 2.5.1. Supports…

Proof-of-concept exploit for CVE-2024-51132, an XML External Entity (XXE) injection vulnerability in HAPI FHIR core libraries, enabling SSRF and…

Jenkins POC of Arbitrary file read vulnerability through the CLI can lead to RCE

PowerShell script to detect systems vulnerable to CVE-2021-34470, a Windows privilege escalation vulnerability, by checking registry keys and system…

Proof-of-concept for CVE-2024-43018: SQL injection in Piwigo 13.8.0 via unsanitized max_level and min_register parameters, enabling information…

Detection scripts for CVE-2023-50164 in Apache Struts2, providing PowerShell and Bash tools to scan for vulnerable versions across file systems and…

This is a Python Application that helps you detect if your machine that run bash is vulnerable by CVE-2014-6271