

The tool exfiltrates data from Couchbase database by exploiting N1QL injection vulnerabilities.

Local CVE/CPE vulnerability database with search, ranking, web interface, and API for offline vulnerability analysis and management.

Automated SQL injection detection and exploitation tool for extracting database information from web applications, supporting multiple injection…

Open-source vulnerability database aggregating CVE data from multiple sources with a web UI and API. Maps vulnerabilities to specific software…

SQLite VFS with sub-100ms cold JOIN queries from S3 + page-level compression and encryption

Universal mobile devtool for Agents & Humans - control iOS Simulators, Android Emulators, and real devices from a single dashboard and CLI

CLI tool to scan for and exploit insecure Firebase databases, supporting mass vulnerability scanning, custom JSON payload injection, and URI path…


OSINT tool to search, parse and dump only the open Elasticsearch and MongoDB directories that have the data you care about exposing

Claude Skill that audits your projects for RLS misconfigurations, exposed keys, auth bypasses, and storage vulnerabilities. 27 anti-patterns sourced…

MAD-CAT (Meow Attack Data Corruption Automation Tool) is a comprehensive security tool designed to simulate data corruption attacks against multiple…

a critical memory disclosure vulnerability in MongoDB's zlib compression handling. This tool allows security researchers to extract sensitive data…

An anonymizer tool for replacing PII and similar data in dev/test databases copied from production

OpenFire 管理后台账号密码解密

Exploit code for CVE-2020-11579, an arbitrary file disclosure through the MySQL client in PHPKB

CVE-2019–9193 - PostgreSQL 9.3-12.3 Authenticated Remote Code Execution

CVE-2024-34693: Server Arbitrary File Read in Apache Superset