
MySQL-Fu.rb
MySQL-Fu is a Ruby based MySQL Client Script I wrote. It does most of the stuff a normal MySQL client might do: SQL Shell, Update/Delete/Drop…

MySQL-Fu is a Ruby based MySQL Client Script I wrote. It does most of the stuff a normal MySQL client might do: SQL Shell, Update/Delete/Drop…

JAW: A Graph-based Security Analysis Framework for Client-side JavaScript

SQL Injection vulnerability discovered in Grocery Store Management System 1.0

web2py/web2py @ e94946d

Apache CouchDB 3.2.1 - Remote Code Execution (RCE)

Proof-of-concept exploit for CVE-2022-22980 targeting Spring Data MongoDB. Demonstrates remote code execution via crafted MongoDB queries. Requires…

Mongo Vulnub Lab...Try to Hack IT.....!

Offensive MSSQL toolkit written in Python, based off SQLRecon

Blind noSQL injection case study lab based on CVE-2018-3783

MAximo SQL Injection Time Based - Oracle DB

High-performance network discovery and security auditing tool with advanced port scanning, OS detection, service version detection, and scriptable…

Version 0.2 - Exploit Time-based blind-SQL injection in HTTP-Headers (MySQL/MariaDB).

A python library to automate time-based blind SQL injection

PoC for CVE-2026-2005

This script demonstrates a time-based blind SQL injection on Moodle platforms, exploiting response delays to extract data.

Proof-of-concept exploit for CVE-2026-23921, a time-based blind SQL injection in Zabbix API via the sortfield parameter, enabling data extraction…

The action responsible for setting the per-warehouse stock alert threshold (`seuil_stock_alerte`) accepts user-controlled input and later…

ZenoMinder Blind SQL Injection PoC