
N1QLMap
The tool exfiltrates data from Couchbase database by exploiting N1QL injection vulnerabilities.

The tool exfiltrates data from Couchbase database by exploiting N1QL injection vulnerabilities.

An anonymizer tool for replacing PII and similar data in dev/test databases copied from production

a critical memory disclosure vulnerability in MongoDB's zlib compression handling. This tool allows security researchers to extract sensitive data…

Unauthenticated SQL injection exploit for Ghost CMS Content API (CVE-2026-26980); dumps database tables from SQLite/MySQL with active/passive checks…

Automated SQL injection detection and exploitation tool for extracting database information from web applications, supporting multiple injection…

Open-source vulnerability database aggregating CVE data from multiple sources with a web UI and API. Maps vulnerabilities to specific software…

Universal mobile devtool for Agents & Humans - control iOS Simulators, Android Emulators, and real devices from a single dashboard and CLI

SQLite VFS with sub-100ms cold JOIN queries from S3 + page-level compression and encryption

Claude Skill that audits your projects for RLS misconfigurations, exposed keys, auth bypasses, and storage vulnerabilities. 27 anti-patterns sourced…

The first poc video presenting the sql injection test from ( WordPress Core 5.8.2-'WP_Query' / CVE-2022-21661)

OpenPLC Runtime suffers from a persistent denial of service (DoS) vulnerability in the /upload-program-action endpoint.

This lab simulates CVE-2019-9193 - PostgreSQL COPY FROM PROGRAM RCE

Nexter <= 2.0.3 - Authenticated (Subscriber+) SQL Injection via 'to' and 'from'


Local CVE/CPE vulnerability database with search, ranking, web interface, and API for offline vulnerability analysis and management.


CLI tool to scan for and exploit insecure Firebase databases, supporting mass vulnerability scanning, custom JSON payload injection, and URI path…