
CVE-2024-40725
exploit CVE-2024-40725 (Apache httpd) with

exploit CVE-2024-40725 (Apache httpd) with

Generate wordlists of Danish phone numbers by area and/or usage (Mobile, landline etc.) Useful for password cracking or fuzzing Danish targets.

Demonstrate some functionalities of Morion by generating an exploit for CVE-2022-27646 (stack buffer overflow on Netgear R6700v3 routers).

simple Python exploit using CVE-2018-7449 on embOS/IP FTP Server v3.22

Lightweight scanner and Nuclei templates for identifying React and Next.js deserialization RCEs (CVE-2025-55182 / CVE-2025-66478).

Fuzzer for the Sparkplug B IIoT protocol

Research-driven UPnP vulnerability scanner focusing on libupnp 1.6.19 and CVE-2012-5958.

Proof-of-concept scanner for CVE-2024-38475 (SonicBoom) Apache URL traversal. Automates TLS negotiation, directory scanning, traversal verification,…

dtls-fuzzer is a protocol-state-fuzzer for DTLS server implementations.

Fuzz a list of domains for specific endpoints

CRLF and open redirect fuzzer

Runtime libc function auditor that detects file access race conditions and symlink vulnerabilities by hooking filesystem syscalls via LD_PRELOAD,…

Fork of OpenSSL implementing TLS, cryptographic primitives, and X.509 certificate handling for use in Chrome and Android, with no API/ABI…

This cheatsheet is built for the Bug Bounty Hunters and penetration testers in order to help them hunt the vulnerabilities from P4 to P1 solely and…

BurpSuite plugin for encrypting payloads with AES, RSA, DES, or custom JS code, enabling automated decryption of front-end encrypted traffic during…

Find regular expressions which are vulnerable to ReDoS (Regular Expression Denial of Service)

C library implementing the SSH protocol for secure remote access, authentication, and encrypted communication. Includes fuzzing support via OSS-Fuzz…

SignSaboteur is a Burp Suite extension for editing, signing, verifying various signed web tokens