
DahuaConsole
Dahua Console, access internal debug console and/or other researched functions in Dahua devices. Feel free to contribute in this project.

Dahua Console, access internal debug console and/or other researched functions in Dahua devices. Feel free to contribute in this project.

PhantomJS uses internal module: webpage, to open, close, render, and perform multiple actions on webpages, which suffers from an arbitrary file read…

The VMWare Horizon Connection Server is often used as an internet-facing gateway to an organization’s virtual desktop environment (VDI). Until…

CVE-2022-23779 is a security vulnerability in Zoho ManageEngine Desktop Central ,Testing for CVE-2022-23779 using curl

Atlassian Jira XSS attack via Server Side Request Forgery (SSRF).

A tool for generating multiple types of NTLMv2 hash theft files by Jacob Wilkin (Greenwolf)

Web-Scale NoSQL Idempotent Cloud-Native Big-Data Serverless Plaintext Credential Search

CVE-2023-26083-Mali-InfoLeak-PoC


PoC and Disclosure for CVE-2023-7231 – Memcached Gopher RCE chain


Advanced search in search engines, enables analysis provided to exploit GET / POST capturing emails & urls, with an internal custom validation…

A framework for identifying and launching exploits against internal network hosts. Works via WebRTC IP enumeration combined with WebSockets and…

Advanced search in search engines, enables analysis provided to exploit GET / POST capturing emails & urls, with an internal custom validation…

A GitHub recon/monitoring tool for finding internal leaks belonging to your organisation.

automato should help with automating some of the user-focused enumeration tasks during an internal penetration test.

Use Exposed KongAPI to act like a proxy and get metadata urls or internal urls

Internal Hostname Disclosure Vulnerability