
teleport
The easiest, and most secure way to access and protect all of your infrastructure.

The easiest, and most secure way to access and protect all of your infrastructure.

Next-generation SQL static analyzer written in Rust. 282+ rules. Zero false positives. Security, performance, reliability, cost, compliance, quality.…

Relational database brute force and post exploitation tool for MySQL and MSSQL

A simple and quick way to check if your SQL Developer by Oracle is vulnerable to SQL Injection (CVE-2023-3163), most commonly occurs when SQL…

MySQL-Fu is a Ruby based MySQL Client Script I wrote. It does most of the stuff a normal MySQL client might do: SQL Shell, Update/Delete/Drop…

Proof-of-concept for a time-based blind SQL injection vulnerability in the takeassessment2.php endpoint of CloudClassroom-PHP-Project 1.0,…

This tool takes a list of default creds and tests it against a postgresql server and logs any that work and the databases it has access to.

A Poc for CVE-2020-24913, a SQL injection vulnerability in qcubed (all versions including 3.1.1) in profile.php via the strQuery parameter allows an…

Writeup of a Denial of Service vulnerability in the vBulletin 3.8.7 friends list.

A C# MS SQL toolkit designed for offensive reconnaissance and post-exploitation.

SolarWinds Orion Account Audit / Password Dumping Utility

A C# MS SQL toolkit designed for offensive reconnaissance and post-exploitation.

CLI tool to scan for and exploit insecure Firebase databases, supporting mass vulnerability scanning, custom JSON payload injection, and URI path…

Hunt Open MongoDB instances

CVE-2026-23631 (DarkReplica) Redis Exploit

PoC of CVE-2022-24707

