
CVE-2025-48932-Invision-Community-SQLi-Exploit
Automated exploit for CVE-2025-48932, an unauthenticated blind SQLi in Invision Community <= 4.7.20, with database enumeration, credential dumping,…

Automated exploit for CVE-2025-48932, an unauthenticated blind SQLi in Invision Community <= 4.7.20, with database enumeration, credential dumping,…

Proof-of-concept exploit framework for CVE-2026-57588, a SQL injection in Nessus XML import. Generates malicious .nessus files for database…

Real-time geospatial OSINT platform aggregating flight, vessel, and satellite data with dark web search, social media dorking, and AI-powered…

In-depth attack surface mapping and asset discovery

Automated reconnaissance and exploitation framework for misconfigured Supabase instances. Features schema enumeration, Selenium-based key extraction,…

Exploit and post-exploitation framework for Next.js RSC (CVE-2025-55182), with interactive RCE, file transfer, persistence, enumeration, and privesc.

Security assessment and post-exploitation toolkit for Microsoft SQL Server with enumeration, privilege escalation, code execution, lateral movement,…

A cheat sheet that contains common enumeration and attack methods for Windows Active Directory.

Cyber threat intelligence platform for SSL certificate discovery, domain/URL scanning, data leak monitoring, tracking link generation, and threat…

Slack Enumeration and Extraction Tool - extract sensitive information from a Slack Workspace

HTA-based post-exploitation shell for breakout assessments. Provides file explorer, system reconnaissance, AD enumeration, and file transfer…

A Powerful Penetration Tool For Automating Penetration Tasks Such As Local Privilege Escalation, Enumeration, Exfiltration and More... Use Or Build…

Automated scanner for discovering and exploiting misconfigured Firebase databases, with DNS enumeration, subdomain crawling, and parallel processing…

Automated enumeration tool that searches paste sites (Pastebin, Gist, GitHub) for leaked text dumps, dox, and sensitive data, with HTML/JSON…