
openvas-scanner
This repository contains the scanner component for Greenbone Community Edition.

This repository contains the scanner component for Greenbone Community Edition.

This tool generates gopher link for exploiting SSRF and gaining RCE in various servers

a critical memory disclosure vulnerability in MongoDB's zlib compression handling. This tool allows security researchers to extract sensitive data…

This script demonstrates a time-based blind SQL injection on Moodle platforms, exploiting response delays to extract data.

CVE-2024-4879.py is a Python script designed to detect specific vulnerabilities in ServiceNow instances and dump database connection details if the…

This repository hosts a multimodal web attack dataset (MWAD) to advance AI-driven threat detection research.

SQL Injection vulnerability in NASA EOSDIS MODAPS due to improper input validation in the `category` parameter. This flaw allows attackers to…

This Python 3 script is for uploading shell (and other files) to Windows Server / Linux via Oracle 11g R2 (CVE-2010-3600).

Weak MySQL database root password in LaborOfficeFree affects version 19.10. This vulnerability allows an attacker to calculate the root password of…

A flaw was found in the Django package, which leads to a SQL injection. This flaw allows an attacker using a crafted dictionary containing malicious…

Detailed analysis of the 2023 MOVEit Transfer data breach (CVE-2023-34362) for CS50 Cybersecurity. This project explores the technical impact of…

A low-privileged user can exploit this via a crafted order_by parameter, causing time-based blind SQL injection.

This repo contains my python script version of CVE-2025-14847 (MongoBleed)

This lab simulates CVE-2019-9193 - PostgreSQL COPY FROM PROGRAM RCE

This tool takes a list of default creds and tests it against a postgresql server and logs any that work and the databases it has access to.

This script is used to identify MongoDB services that are network-exposed and allow unauthenticated protocol handshakes.

Python script designed to detect specific vulnerabilities in ServiceNow instances and dump database connection details if the vulnerability is found.…

Post-exploitation framework for automated network authentication testing, credential harvesting, and lateral movement across Windows/AD environments…