
awesome-bugbounty-tools
Curated directory of bug bounty tools organized by category: reconnaissance, subdomain enumeration, port scanning, content discovery, exploitation,…

Curated directory of bug bounty tools organized by category: reconnaissance, subdomain enumeration, port scanning, content discovery, exploitation,…

A curated list of resources related to Industrial Control System (ICS) security.

CVE-2021-40444 - Fully Weaponized Microsoft Office Word RCE Exploit

CVE-2025-49844 (RediShell)

:poodle: Poodle (Padding Oracle On Downgraded Legacy Encryption) attack CVE-2014-3566 :poodle:

Spring4Shell - Spring Core RCE - CVE-2022-22965

Powershell SAP assessment tool

Stealthy IIS backdoor using hidden ISAPI filter for persistent remote access, data exfiltration, and on-the-fly exploit injection via custom HTTP…

Aggressor Script to launch IE driveby for CVE-2018-15982.

Black-box security evaluation of five ISP cable modem/router gateways, analyzing firmware images and documenting 35+ vulnerabilities including…

CVE-2026-41940 latest cPanel & WHM 0day - 70 million websites are possible to expose by Chirag Artani

POC - CVE-2024–4956 - Nexus Repository Manager 3 Unauthenticated Path Traversal

Red portatil de reconocimiento inteligente con IA offline

Educational lab environment with a proof-of-concept exploit for CVE-2025-49844 (RediShell), a critical use-after-free in Redis Lua interpreter,…

A PoC for CVE 2023-20198


POC - CVE-2024–24919 - Check Point Security Gateways

Scanner and attack suite for hosts that forward unauthenticated packets via IPIP and GRE protocols. (CVE-2020-10136 CVE-2024-7595)