
log4j
Multithreaded Python scanner that detects Log4Shell (CVE-2021-44228) by sending crafted HTTP requests with JNDI payloads and monitoring DNS callbacks…

Multithreaded Python scanner that detects Log4Shell (CVE-2021-44228) by sending crafted HTTP requests with JNDI payloads and monitoring DNS callbacks…
Zero-day in AppleMediaServices: Bag fetch failure disables Mescal/Absinthe signing. Requests to Apple services proceed unsigned, exposing downgrade,…

NGINX DNS Overflow Vulnerability Check - CVE-2021-23017 PoC

Vulnerability Assessment Scanner with Report Generation

Scanner for the Log4j vulnerability dubbed Log4Shell (CVE-2021-44228)

Using this tool, you can scan for remote command execution vulnerability CVE-2021-44228 on Apache Log4j at multiple addresses.

NSE scripts to detect CVE-2020-1350 SIGRED and CVE-2020-0796 SMBGHOST, CVE-2021-21972, proxyshell, CVE-2021-34473

CVE-2021-44228,log4j2 burp插件 Java版本,dnslog选取了非dnslog.cn域名

A script that checks for vulnerable Log4j (CVE-2021-44228) systems using injection of the payload in common HTTP headers.

Reproducer for CVE-2026-48205: Apache Camel camel-dns dns.* header injection redirecting DNS queries to an attacker-controlled resolver (SSRF via…

Cookie-based authentication vulnerability on Tk-Rt-Wr135G

A registry-based workaround can be used to help protect an affected Windows server, and it can be implemented without requiring an administrator to…

Vulnerability checker for Callstranger (CVE-2020-12695)

High-performance network discovery and security auditing tool with advanced port scanning, OS detection, service version detection, and scriptable…

Simple Python 3 script to detect the "Log4j" Java library vulnerability (CVE-2021-44228) for a list of URLs with multithreading

Registry-based mitigation script for CVE-2020-1350 Windows DNS Server RCE vulnerability, applying Microsoft's recommended workaround without server…

Vulnerability as a service: showcasing CVS-2015-5447, a DDoS condition in the bind9 software

Bug bounty and vulnerability research reports by Desai Vinayak — includes CVE-2023-50290 (Apache Solr) and Zscaler subdomain takeover findings.