
nmap
High-performance network discovery and security auditing tool with advanced port scanning, OS detection, service version detection, and scriptable…

High-performance network discovery and security auditing tool with advanced port scanning, OS detection, service version detection, and scriptable…

Real-time monitoring and slowlog analysis for Valkey and Redis databases with anomaly detection, ACL auditing, and Prometheus metrics export.

A Python Framework For NoSQL Scanning and Exploitation

Claude Skill that audits your projects for RLS misconfigurations, exposed keys, auth bypasses, and storage vulnerabilities. 27 anti-patterns sourced…

POC-Django JSONField/HStoreField SQL Injection Vulnerability (CVE-2019-14234)

A Beacon Object File suite for Microsoft SQL Server that speaks TDS 7.4 on the wire itself

This script demonstrates a time-based blind SQL injection on Moodle platforms, exploiting response delays to extract data.

Attempts to exploit CVE-2012-3137 on vulnerable Oracle servers

Unauthenticated SQL injection exploit for Microsoft Configuration Manager (SCCM) 2503, enabling arbitrary SQL execution on the site database via the…

Blind noSQL injection case study lab based on CVE-2018-3783

CVE-2026-69084/69085 — SiYuan arbitrary SQL execution via searchEmbedBlock + searchDocs SQLi (CVSS 9.9). Verified on v3.7.2, rejected on v3.7.3.

Exploit for CVE-2025-10351. SQL Injection on Melis Platform Framework

Proof-of-concept exploit for CVE-2012-2661, an SQL injection vulnerability in Ruby on Rails ActiveRecord. Includes a write-up in Malay demonstrating…

CVE-2025-49844 (RediShell)

PoC for CVE-2022-34265 (Django)

Heap OOB write in MariaDB JSON_SCHEMA_VALID() → persistent privilege escalation (lab-assisted)

PoC script for CVE-2023-20110 - Cisco Smart Software Manager On-Prem SQL Injection Vulnerability

PoC exploit for CVE-2021-22146 that dumps Elastic ECE databases (versions 7.10.0 to 7.13.3) during internal penetration tests.