
testssl.sh
Testing TLS/SSL encryption anywhere on any port

Testing TLS/SSL encryption anywhere on any port

D(HE)ater is a proof of concept implementation of the D(HE)at attack (CVE-2002-20001) through which denial-of-service can be performed by enforcing…


Parallel SSH service discovery and security auditor that scans any port, validates SSH banners, and audits authentication methods, weak cryptography,…

Web interface to change and reset password in an LDAP directory

Cryptographically secure messaging and social networking service.


Continuously fetches and cryptographically verifies key transparency log updates, maintains a condensed prefix and log tree view, and returns signed…

Denial of Service vulnerability in ecdsa (PyPI)

Full-lifecycle penetration test of a legacy Linux environment (Metasploitable 2) emulated on Apple Silicon. Demonstrating network reconnaissance, RCE…

ShuckNT is the script of Shuck.sh online service for on-premise use. It is design to dowgrade, convert, dissect and shuck authentication token based…

Application-layer protocol framework for trust-based, end-to-end encrypted communication across heterogeneous networks, enabling uniform service…

Multi-threaded Padding Oracle attacks against any service. Written in Rust.

CVE-2019-5010 Exploit PoC - Python Denial of Service via Malformed X.509v3 Extension

investigate vulnerability of opgp-service to message signature bypass (CVE-2019-9153) of openpgp

Exploit of the CVE-2016-1494 allowing to forge signatures of RSA keys with low exponents

A multi service threaded MD5 cracker

Analysis of CVE-2016-3959 and a Proof of Concept Attack Against a Go SSH Server.