
UI_CVE-2017-9248
Base64-based encryption oracle exploit for CVE-2017-9248 (Telerik UI for ASP.NET AJAX dialog handler)

Base64-based encryption oracle exploit for CVE-2017-9248 (Telerik UI for ASP.NET AJAX dialog handler)

Decrypts Huawei router and switch passwords using DES ECB mode, exploiting CVE-2012-4960 weak encryption. Python script for password recovery from…

Resources and PoCs

Decrypts Hikvision IP camera configuration files extracted via CVE-2017-7921 authentication bypass, revealing user credentials and device settings.

Extracts decrypted IPA files from jailbroken iOS devices using Frida for reverse engineering, security analysis, and mobile app pentesting.

ETS5 Password Recovery Tool is a PoC for CVE-2021-36799

Talos Decryptor POC for Remcos RAT version 2.0.5 and earlier

A PowerShell armoury for security guys and girls

fork of the popular jsch library

Bypass Chromium's App-Bound Encryption via Direct Syscall-based Reflective Process Hollowing. Extract cookies, passwords, payment methods & tokens…

The main freelan repository.

SwiftNIO SSH is a programmatic implementation of SSH using SwiftNIO

Encrypted PE Loader Generator

OWASP ZSC - Shellcode/Obfuscate Code Generator https://www.secologist.com/

A web-based RDP client

A C2 post-exploitation framework

The ADSyncDump BOF is a port of Dirk-Jan Mollema's adconnectdump.py / ADSyncDecrypt into a Beacon Object File (BOF) with zero dependencies.

Trusted localhost HTTPS — local CA, /etc/hosts, mDNS LAN sharing, reverse proxy. Maps https://name.local → localhost:port