
CVE-2025-30208
Exploit scanner for CVE-2025-30208 (Vite arbitrary file read) with multi-variant bypass detection, credential harvesting, SSH key extraction, and…

Exploit scanner for CVE-2025-30208 (Vite arbitrary file read) with multi-variant bypass detection, credential harvesting, SSH key extraction, and…

WP SuperBackup <= 2.3.3 - Missing Authorization to Unauthenticated Back-Up File Download

TotalCMS is affected by Arbitrary File Upload - XSS vulnerability which allows Cross-Site Scriting (XSS) Stored and also stealing session cookies

PoC for CVE-2026-85706: GitLab CE/EE unauthenticated arbitrary local file read

Decrypted content of eqgrp-auction-file.tar.xz

Data exfiltration over DNS request covert channel

Hide files inside images: encrypted, signed, deniable, and JPEG-robust. Python CLI and library with built-in steganalysis and an in-browser demo.

CVE-2023-24055 PoC (KeePass 2.5x)

Hide 🕵️♂️ your files of any type inside a image of your choice using steganography

Python3 utility for creating zip files that smuggle additional data for later extraction

Bypassing NTFS permissions to read any files as unprivileged user.

Better Remote Access Trojan

Exfiltrate files using the HTTP protocol version ("HTTP/1.0" is a 0 and "HTTP/1.1" is a 1)

Rogue-MySql-Server

Notepad++ CVE-2026-52886 — session.xml backupFilePath starts_with() path traversal (GHSA-rqfm-pw34-r7j6)

AI Prompt Secret Scanner: local proxy and Claude Code hook that blocks secrets before they reach AI APIs

An at-rest encrypted filesharing application with multiple clients who seek to share privately, without tracking.

POC for CVE-2026-7720 - Ollama tensor digest path traversal