
CVE-2026-44680-MikroORM-SQL-Injection-Exploit-Framework
CVE-2026-44680 exploit framework for MikroORM SQL injection. Detects and exploits JSON path injection vulnerabilities with UNION-based and blind data…

CVE-2026-44680 exploit framework for MikroORM SQL injection. Detects and exploits JSON path injection vulnerabilities with UNION-based and blind data…

Proof-of-concept exploit for CVE-2026-5029, delivering unauthenticated remote code execution via the run-code MCP tool on exposed HTTP endpoints.…

Black-box WordPress vulnerability scanner that detects security issues, enumerates users, brute-forces logins via XMLRPC, and performs static PHP…

🧬 Extract and analyze contributors info from git repos

A command line CWE discovery tool based on OWASP / CAPSEC database of Common Weakness Enumeration.

A Common Weakness Enumeration (CWE) Node.js SDK compliant with MITRE / CAPEC

Asset-wide detection tool for identifying jsPDF usage related to CVE-2025-68428 Detection only — no exploitation

Use IDA PRO HexRays decompiler with OpenAI(ChatGPT) to find possible vulnerabilities in binaries

Proof-of-concept for CVE-2024-43018: SQL injection in Piwigo 13.8.0 via unsanitized max_level and min_register parameters, enabling information…

Scans GitHub Actions CI/CD workflows for security vulnerabilities, indexes findings into a Neo4j graph database, and provides a query library for…

Proof-of-concept exploit for CVE-2025-22710, a blind SQL injection vulnerability in the Smart Manager WordPress plugin (<=8.50.0). Includes technical…

Fast Go-based static scanner for detecting sensitive data (API keys, tokens, passwords) in JavaScript files and source code using regex patterns.

Extract URLs, paths, secrets, and other interesting bits from JavaScript

A tool to hunt for credentials in github wild AKA git*hunt

Java classpath enumeration, focussed on CVE-2014-0043 for Apache Wicket 6.x

Go scripts for finding sensitive data like API key / some keywords in the github repository

Shell scripts to clone and mirror Git repositories, compute deltas, and run gitleaks to detect secrets hidden in deleted or reset commits.