
strutszeiro
Telegram Bot to manage botnets created with struts vulnerability(CVE-2017-5638)

Telegram Bot to manage botnets created with struts vulnerability(CVE-2017-5638)

Bot for Telegram on WooCommerce <= 1.2.4 - Authenticated (Subscriber+) Telegram Bot Token Disclosure to Authentication Bypass

LiveHelperChat <=4.61 - Stored Cross Site Scripting (XSS) via Telegram Bot Username

CVE-2023-26818 Exploit MacOS TCC Bypass W/ Telegram

PoC Exploit for CVE-2025-7753 — Time-Based SQL Injection in Online Appointment Booking System 1.0 via the username parameter. Exploit written in C…

telegram bug that discloses user's hidden phone number (still unpatched) (exploit included)

Exploit script for CVE-2026-41940, an authentication bypass in cPanel/WHM using CRLF injection to gain admin access and change root password, with…

Exploit Win10Pcap Driver to enable some Privilege in our process token ( local Privilege escalation )

Proof of Concept (PoC) for CVE-2024-7014 (EvilVideo) Exploit

Proof-of-concept exploit for CVE-2023-3047 SQL injection vulnerability in TMT Lockcell. Demonstrates manual exploitation using cURL and Burp Suite to…

Detailed analysis and PoC for CVE-2025-67887/86 RCE in 1C-Bitrix Translate module, including exploit chain, CVSS scoring, and mitigation…

Proof-of-concept exploit for a buffer overflow vulnerability in Tenda routers. Sends crafted unauthenticated POST requests to trigger a crash and…

Exploit for CVE-2025-32429 – SQLi in XWiki REST API (getdeleteddocuments.vm).

Automated vulnerability scanner for CVE-2023-28121 that checks a list of targets concurrently and delivers results via Telegram notifications.

Frida-based proof-of-concept demonstrating authentication bypass in Telegram Android by hooking SharedConfig.checkPasscode to always return true,…

A vehicle network analysis and attack tool.

A standalone Blind XSS Script.

AI Engine <= 3.1.3 - Unauthenticated Sensitive Information Exposure to Privilege Escalation