
BRC4-BOF-Artillery
Collection of Brute Ratel C4 BOFs for Windows post-exploitation: process memory access, NetNTLMv2 hash retrieval, contact harvesting, and…

Collection of Brute Ratel C4 BOFs for Windows post-exploitation: process memory access, NetNTLMv2 hash retrieval, contact harvesting, and…

Decrypt GlobalProtect configuration and cookie files.

A tool designed to exploit bad implementations of decryption mechanisms in Laravel applications.

Offline MGRS navigation + BLE proximity team sync for 2-8 people. No cell service needed. V1.0 through V4.0 roadmap in README.

A python3 script that uses cl1p website to send and receive secret messages

A fully featured Windows backdoor that uses email as a C&C server

Card calculator and Proxmark3 Plugin for writing and/or simulating every card type that Doppelgänger Community, Pro, Stealth, and MFAS support.

泛微oa数据库配置文件读取

用于借助FOFA快速测试海康威视的CVE-2017-7921漏洞,并且给出登陆账号和密码,并输出json文件。

Catch what's lurking in your Kafka clusters.

Laravel Crypto Killer Mass Scanner (CVE-2024-55555)

Bash and PowerShell scripts for Azure security assessments, covering IAM privilege escalation, container registry exploitation, Key Vault exposure,…

Suka suka lah

Python toolkit for authorized testing of CVE-2021-43798 Grafana path traversal, with arbitrary file read PoC, secret decryption, and user hash export…

Exploit for CVE-2020-2733 in JD Edwards EnterpriseOne Tools, demonstrating unauthenticated admin password decryption and authentication bypass to…

Decrypts Hikvision IP camera configuration files extracted via CVE-2017-7921 authentication bypass, revealing user credentials and device settings.

Ninja Framework sensitive information leak due to weak encryption

DNS Proxy that is simple and fast with not so simple features. Focused on routed DNS forwarding, filtering and parental control.