
whonow
A "malicious" DNS server for executing DNS Rebinding attacks on the fly (public instance running on rebind.network:53)

A "malicious" DNS server for executing DNS Rebinding attacks on the fly (public instance running on rebind.network:53)


DNS tunneling tool using PowerShell and Nslookup to exfiltrate data and deliver payloads via DNS TXT/MX records, bypassing Constrained Language Mode…

Operational Security utility and automator.

EternalView is an all in one basic information gathering and vulnerability assessment tool

Data exfiltration utility for testing detection capabilities

Scripts to detect Fast-Flux and DGA using DNS query responses

A free, open-source, multi-lingual, template-based VDP policy, safe harbor clause, securitytxt, and DNS Security TXT generator.

CLI MITM proxy that converts SOCKS4/SOCKS5 into HTTP/HTTPS/HTTP2/HTTP3 proxy with transparent TCP/UDP redirection, ARP/NDP/DNS spoofing, traffic…


DDoor - cross platform backdoor using dns txt records

CVE-2020-16899 - Microsoft Windows TCP/IP Vulnerability Detection Logic and Rule

Zeek package for detecting CVE-2020-1350 (SIGRed) Windows DNS server exploit attempts via large DNS SIG/KEY response analysis with configurable…

Exploit for CVE-2015-6357 Cisco FireSIGHT Management Center Certificate Validation Vulnerability

PowerShell script to mitigate CVE-2020-1350 (SigRED) by reducing DNS server TCP receive packet size limit and restarting the service.

Poc Exploit for CVE-2026-27831 - vulnerability discovered by : Antonius

Fuzzing the Microsoft Windows DNS client library. Inspired by CVE-2026-41096.

Curated vulnerability writeups with full technical analysis, proof-of-concept scripts, IOC listings, and remediation guidance for real-world software…