


Read-only WordPress plugin that scans for artifacts of the wp2shell exploit chain (CVE-2026-63030 / CVE-2026-60137)

PoC for CVE-2026-54350 — Budibase unauthenticated NoSQL operator injection (CVSS 10.0). Read/mass-write any document collection via a PUBLIC query.

A collection of awesome security hardening guides, tools and other resources

YARA malware query accelerator (web frontend)

Public exploit repository covering local privilege escalation, buffer overflows, and database exploits across Linux, Solaris, AIX, OpenBSD, Zyxel,…

Detection Script for MongoBleed Exploitation

chat log tool, easily use your own chat data. 聊天记录工具,轻松使用自己的聊天数据

A collection of web pages vulnerable to SQL injection flaws