
htb-ctf-walkthroughs
Walkthroughs for Capture the Flag challenges on the HTB Cybersecurity Platform.

Walkthroughs for Capture the Flag challenges on the HTB Cybersecurity Platform.

A list of useful payloads and bypass for Web Application Security and Pentest/CTF

Open-source web application security scanner that identifies and exploits 200+ vulnerabilities including XSS, SQL injection, and OS commanding.…

A Deliberately Vulnerable Web Application built on Struts 2 (CVE-2017-5638) and Log4J (CVE-2021-44228) for testing and demonstration of OWASP Top 10…

A comprehensive web application security testing toolkit that combines 10 powerful penetration testing features into one tool.

The script exploits Mailcow vulnerabilities via XSS and RCE, emphasizing the need for robust security measures and responsible usage to enhance web…

Proof-of-concept exploit for CVE-2019-11043, a PHP-FPM underflow vulnerability, built on the pocsuite framework for automated web application…

Django-based CTF blog platform with integrated CVE-2021-35042 exploit tool for learning web application security and vulnerability exploitation.

Proof-of-concept demonstrating a CSRF vulnerability in a PHP-based Client Management System, with HTML exploit code and mitigation strategies for web…

SQL injection exploit for Adiscon LogAnalyzer v4.1.13 and earlier (CVE-2023-34600). Provides proof-of-concept code for testing web application…

Exploit module for Apache JSPWiki CVE-2022-46907, targeting a Java-based wiki platform with JAAS security integration. Provides vulnerability…

Proof-of-concept exploit for CVE-2019-14319, demonstrating a specific vulnerability in a web application for security testing and verification.

Proof-of-concept exploit for CVE-2018-15912, demonstrating a remote code execution vulnerability in a web application for security testing and…

Proof-of-concept exploit for CVE-2023-0297, demonstrating a specific vulnerability in a web application for security testing and validation purposes.

Proof-of-concept exploit for CVE-2023-34852, demonstrating a specific vulnerability in a web application for security testing and validation.

Proof-of-concept exploit for CVE-2022-29007, demonstrating a specific vulnerability in a web application for security research and testing.

Proof-of-concept exploit for CVE-2020-28502, demonstrating a specific vulnerability in a web application for security research and testing.

Proof-of-concept exploit for CVE-2021-27198, demonstrating a specific vulnerability in a web application for security testing and validation.