
TIDoS-Framework
The Offensive Manual Web Application Penetration Testing Framework.

The Offensive Manual Web Application Penetration Testing Framework.

Web application penetration testing project targeting a WordPress environment. Includes exploitation of CVE-2019-9978, reverse shell execution,…

w3af: web application attack and audit framework, the open source web vulnerability scanner.

A comprehensive web application security testing toolkit that combines 10 powerful penetration testing features into one tool.

Hands-on penetration testing lab environment for CVE-2026-48282, designed for practicing exploitation and vulnerability analysis in a controlled web…

Modern cyber range with 50 hands-on challenges across web, API, cloud, AI, and blue-team security tracks. Features guided attack chains, transparent…

Apache Struts 2.0 RCE vulnerability - Allows an attacker to inject OS commands into a web application through the content-type header

The script exploits Mailcow vulnerabilities via XSS and RCE, emphasizing the need for robust security measures and responsible usage to enhance web…

A stored cross-site scripting (XSS) vulnerability in The Language Sloth Web Application v1.0 allows attackers to execute arbitrary javascript or HTML…

Web Application Exploit Development

This PoC script is designed to verify the presence of CVE-2024-9326, a high SQL Injection vulnerability in PHPGurukul Online Shopping Portal v2.0. It…

React Shell & Next.js RSC Exploit Tool (CVE-2025-55182)



Server-Side Template Injection Exploit

Apache ActiveMQ Remote Code Execution Exploit


Stored XSS in TastyIgniter v3.0.7 Restaurtant CMS