
agentsh
Execution-Layer Security (ELS) for AI agents — policy-enforced shell with audit.

Execution-Layer Security (ELS) for AI agents — policy-enforced shell with audit.

Remotely delete access logs, Windows event logs, databases, and files on target machines using automated scanning or manual attack selection for…

Offensive MSSQL toolkit written in Python, based off SQLRecon

A C# MS SQL toolkit designed for offensive reconnaissance and post-exploitation.

Low-memory graphdb with Bolt+tls support, at-rest encryption & vectors designed for local replica graph use cases.

A Beacon Object File suite for Microsoft SQL Server that speaks TDS 7.4 on the wire itself

CVE-2021-27928 MariaDB/MySQL-'wsrep provider' 命令注入漏洞

Claude Skill that audits your projects for RLS misconfigurations, exposed keys, auth bypasses, and storage vulnerabilities. 27 anti-patterns sourced…

Webshell, Virtual Private Server (VPS) and cPanel Database

mssql 终端连接工具|命令执行

Exploit for CVE-2023-27524 targeting Apache Superset auth bypass and RCE. Forges session cookies, enumerates databases/users, executes OS commands,…

POCs to demonstrate CVE-2026-42167 in ProFTPD

Deployable AWS-hosted Active Directory pentest lab with domain controller and vulnerable MSSQL; practice S4U2Self abuse, SQL brute force, and RCE.

AuthBypass & Auto Backdooring Devices

A new open-source tool to quickly audit SAP permissions.

Python exploit for CVE-2026-72898, an unauthenticated SQL injection in Metabase's password reset endpoint that creates admin accounts and extracts…


Self-contained Python PoC for Dovecot SQL authentication bypass: logs in as any user without the real password and enumerates usernames on vulnerable…