
odat
Penetration testing tool for Oracle Databases that discovers valid SIDs, brute-forces credentials, escalates privileges to DBA, executes system…

Penetration testing tool for Oracle Databases that discovers valid SIDs, brute-forces credentials, escalates privileges to DBA, executes system…

Proof-of-concept exploit for CVE-2025-14847, a MongoDB zlib decompression vulnerability that leaks uninitialized server memory via crafted BSON…

Automated tool that hunts for world-readable passwords in Active Directory LDAP databases by leveraging Kerberos authentication and ldapsearch to…

A Beacon Object File suite for Microsoft SQL Server that speaks TDS 7.4 on the wire itself

Tool designed to help identify open Elasticsearch servers that are exposing sensitive information

OSINT tool to search, parse and dump only the open Elasticsearch and MongoDB directories that have the data you care about exposing

Local proof-of-concept scanner that detects plaintext database passwords in llama-stack initialization logs, using regex pattern matching to identify…

This tool takes a list of default creds and tests it against a postgresql server and logs any that work and the databases it has access to.

This script is used to identify MongoDB services that are network-exposed and allow unauthenticated protocol handshakes.

Ansible playbook that applies the Percona patch for CVE-2016-6662 to the mysqld_safe file on CentOS and FreeBSD systems.

MSDAT: Microsoft SQL Database Attacking Tool

A C# MS SQL toolkit designed for offensive reconnaissance and post-exploitation.

A C# MS SQL toolkit designed for offensive reconnaissance and post-exploitation.

DevSec MySQL Baseline - InSpec Profile

fsp - Firestore Database Vulnerability Scanner Using APKs

Detection Script for MongoBleed Exploitation

Allow exporting the information downloaded with sqlmap to a relational Database like Postgres and sqlite

Scans exported Azure domain dumps for plaintext passwords, connection strings, storage keys, and other secrets; generates redacted CSV/HTML reports…