

OSINT tool to search, parse and dump only the open Elasticsearch and MongoDB directories that have the data you care about exposing

MAD-CAT (Meow Attack Data Corruption Automation Tool) is a comprehensive security tool designed to simulate data corruption attacks against multiple…

Exploit code for CVE-2020-11579, an arbitrary file disclosure through the MySQL client in PHPKB

Scanner: CVE-2026-9082 Drupal PostgreSQL SQLi via JSON:API — Python scanner for unauthenticated SQLi leading to RCE (CISA KEV)


Rogue-MySql-Server

CVE-2024-34693: Server Arbitrary File Read in Apache Superset

PoC for CVE-2026-57588 - SQL injection in Nessus 10.12.0 XML import. Generates malicious .nessus files to enumerate databases, exfiltrate…

Attempts to exploit CVE-2012-3137 on vulnerable Oracle servers

Automated reconnaissance and exploitation framework for misconfigured Supabase instances. Features schema enumeration, Selenium-based key extraction,…

CVE-2025-14847 – MongoDB Unauthenticated Memory‑Leak Exploit

FOGProject Authentication bypass CVE-2025-58443 Exploit

Weak MySQL database root password in LaborOfficeFree affects version 19.10. This vulnerability allows an attacker to calculate the root password of…



CVE-2025-14847 PoC exploit for MongoDB heap memory disclosure

Adminer CVE-2021-43008 PoC