

The easiest, and most secure way to access and protect all of your infrastructure.

This tool takes a list of default creds and tests it against a postgresql server and logs any that work and the databases it has access to.

Intentionally vulnerable Golang programs exposing web, gRPC, and database/sql flaws for security training, vulnerability discovery, and remediation…

🔎Sniffing and parsing mysql,redis,http,mongodb etc protocol. 抓包截取项目中的数据库请求并解析成相应的语句。

Database firewall written in Go


A file system forensics analysis scanner and threat hunting tool. Scans file systems at the MFT and OS level and stores data in SQL, SQLite or CSV.…

Abacre Retail Point of Sale 14.0.0.396 is vulnerable to content-based blind SQL injection. The vulnerability exists in the Search function of the…

Pull Request-like Review/Approval flow for database queries. For compliant but smooth Engineering access to production.

POC-Django JSONField/HStoreField SQL Injection Vulnerability (CVE-2019-14234)

Capturing SSL/TLS plaintext without a CA certificate using eBPF. Supported on Linux/Android kernels for amd64/arm64.

Scope aggregation tool for HackerOne, Bugcrowd, Intigriti, YesWeHack, and Immunefi!

A tool for exploring Firebase datastores.

Hunt Open MongoDB instances

Steal Apache Solr instance Queries with or without a username and password.

🔍 Scan for MongoDB vulnerabilities with MongoBleed, a high-performance tool for detecting CVE-2025-14847 across large networks quickly and…

Milvus 认证安全检测脚本:CVE-2025-64513 (sourceid后门) / CVE-2026-26190 (/expr弱token) / 内部端口53100