
HotelDruid-CVE-2021-42948
Analyzes CVE-2021-42948, a session token exposure vulnerability in HotelDruid, demonstrating how GET parameters leak session IDs and enable session…

Analyzes CVE-2021-42948, a session token exposure vulnerability in HotelDruid, demonstrating how GET parameters leak session IDs and enable session…

This OSINT Notebook provides an overview of the tools, techniques, and resources that I use for a variety of situations when it comes to performing…

C# Tool to interact with MS Exchange based on MS docs

These templates are suggestions of how the Obsidian notetaking tool can be used during an OSINT investigation. The example data in those files should…

how to look for Leaked Credentials !

A OSINT project that explores how to dump data from React

Masteriyo - LMS for WordPress <= 1.6.7 - Sensitive Information Exposure

Example on how to injection(currently under work) of keylogger js through Safari Extension(that part done)

POC shows how to leak postgresql stuff cause hugefile sub-system. Based on https://x.com/spendergrsec/status/1993794163880718700?s=20

Cortex: a Powerful Observable Analysis and Active Response Engine

Owa Valid Login Checker

Weape-Wireless-EAP-Extractor

Stealthy IIS backdoor using hidden ISAPI filter for persistent remote access, data exfiltration, and on-the-fly exploit injection via custom HTTP…

sniff HDMI DDC (I2C) traffic

Botnet monitoring is a crucial part in threat analysis and often neglected due to the lack of proper open source tools. Our tool will provide an open…

Script is a proof of concept how to control your machine by using social media sites.

YC (S26) | Open Computer History | Record your screen continuously locally and provide context to your agents (Claude, Codex, Openclaw, Hermes,…

[discontinued] Mass exploiter of CVE-2015-1579 for WordPress CMS