
CVE-2025-24799
Exploits GLPI CVE-2025-24799 via unauthenticated time-based blind SQL injection to extract usernames and password hashes from glpi_users for…

Exploits GLPI CVE-2025-24799 via unauthenticated time-based blind SQL injection to extract usernames and password hashes from glpi_users for…

Minimal proof-of-concept exploit for CVE-2025-49132 in Pterodactyl panels; reads PHP files to extract database credentials and enable unauthorized…

Bypass Chromium's App-Bound Encryption via Direct Syscall-based Reflective Process Hollowing. Extract cookies, passwords, payment methods & tokens…

bin2shell is very small utils for extract shell code from the binary file

A tool to extract the IdP cert from vCenter backups and log in as Administrator

Nord Stream is a tool that allows you to extract secrets stored inside CI/CD environments by deploying malicious pipelines. It currently supports…

on Mac 10.12.2

PoC tool for CVE-2026-44680 affecting MikroORM ≤7.0.13. Exploits JSON path injection to extract database contents via UNION-based attacks. Features…

tool to extract passwords from TeamViewer memory using Frida

Manage BitLocker recovery keys, monitor drive encryption status, and unlock volumes through a portable interface for Windows.

This repository details a SQL Injection vulnerability in Inventio Lite v4's, including exploitation steps and a Python script to automate the attack.…

Automated Exploit Tool for Grafana CVE-2021-43798: Scanning common files that contain juicy informations and extracting SSH keys from compromised…

This is a toolkit that uses CVE-2024-31317 to extract private app data via ADB or spawn a shell with an app's UID.

Extract a concerning amount of user information from Unisoc ZTE devices using CVE-2022-38694.

An exploitation tool to extract passwords using CVE-2015-5995.

Exploit script for WordPress Plugin Mail Masta 1.0 - CVE-2016-10956