
mongobleed-scanner
🔍 Scan for MongoDB vulnerabilities with MongoBleed, a high-performance tool for detecting CVE-2025-14847 across large networks quickly and…

🔍 Scan for MongoDB vulnerabilities with MongoBleed, a high-performance tool for detecting CVE-2025-14847 across large networks quickly and…

Tool to crawl, visualize and interact with SQL server links in a d3 graph to help in your red/blue/purple/.../risk assessments pentest hacking team…

MAD-CAT (Meow Attack Data Corruption Automation Tool) is a comprehensive security tool designed to simulate data corruption attacks against multiple…

Python PoC exploiting time-based blind SQLi in Nagios XI to extract database contents, with multithreaded binary-search extraction and CLI…

Tool designed to help identify open Elasticsearch servers that are exposing sensitive information

chat log tool, easily use your own chat data. 聊天记录工具,轻松使用自己的聊天数据

Automated NoSQL database enumeration and web application exploitation tool.

MSDAT: Microsoft SQL Database Attacking Tool

Relational database brute force and post exploitation tool for MySQL and MSSQL

Automated tool that hunts for world-readable passwords in Active Directory LDAP databases by leveraging Kerberos authentication and ldapsearch to…

The tool exfiltrates data from Couchbase database by exploiting N1QL injection vulnerabilities.

OSINT tool to search, parse and dump only the open Elasticsearch and MongoDB directories that have the data you care about exposing

An anonymizer tool for replacing PII and similar data in dev/test databases copied from production

a critical memory disclosure vulnerability in MongoDB's zlib compression handling. This tool allows security researchers to extract sensitive data…

Python tool for exploiting CVE-2021-35616

CVE-2024-4879.py is a Python script designed to detect specific vulnerabilities in ServiceNow instances and dump database connection details if the…

Exploit tool for CVE-2025-14847, a MongoDB memory disclosure vulnerability, enabling multi-threaded extraction of sensitive data and secrets from…

Advanced PostgreSQL database enumeration tool exploiting CVE-2024-39309 in Parse Server - Comprehensive SQL injection exploitation for security…