
PowerUpSQL
PowerUpSQL: A PowerShell Toolkit for Attacking SQL Server

PowerUpSQL: A PowerShell Toolkit for Attacking SQL Server

mssqlproxy is a toolkit aimed to perform lateral movement in restricted environments through a compromised Microsoft SQL Server via socket reuse

A Beacon Object File suite for Microsoft SQL Server that speaks TDS 7.4 on the wire itself

SQLC2 is a PowerShell script for deploying and managing a command and control system that uses SQL Server as both the control server and the agent.

In-target C# post-exploitation tool for Microsoft SQL Server (MS SQL / MSSQL) traversing linked-server chains of any depth with cascading login…

Webshell, Virtual Private Server (VPS) and cPanel Database

Detect security issues, large or small, in a CouchDB server

Tool to crawl, visualize and interact with SQL server links in a d3 graph to help in your red/blue/purple/.../risk assessments pentest hacking team…

Detect security issues in an Apache CouchDB server

CVE-2024-34693: Server Arbitrary File Read in Apache Superset

Microsoft SQL Server sp_replwritetovarbin Memory Corruption via SQL Injection

This Python 3 script is for uploading shell (and other files) to Windows Server / Linux via Oracle 11g R2 (CVE-2010-3600).

Advanced PostgreSQL database enumeration tool exploiting CVE-2024-39309 in Parse Server - Comprehensive SQL injection exploitation for security…

It is an input sanitization flaw caused by an encoding mismatch, allowing crafted input to bypass filters. If a server is vulnerable, an attacker can…

SQLWinds - SQL Server Security Assessment & Post-Exploitation Toolkit

This tool takes a list of default creds and tests it against a postgresql server and logs any that work and the databases it has access to.

CVE-2023-21173 Exploit - Remote Code Execution in SQL Server 2022

An input validation vulnerability in Apache Superset allows an authenticated attacker to create a MariaDB connection with local_infile enabled,…