
LANs.py
Inject code and spy on wifi users

Inject code and spy on wifi users

Cross Site Scripting vulnerability in IP-DOT BuildaGate v.BuildaGate5 allows a remote attacker to execute arbitrary code via a crafted script to the…

Unauthenticated Remote Code Execution in XWiki via SolrSearch Macro

Flowise Windows RCE exploit for CVE-2026-58057. Bypasses environment variable validation via case-sensitive flaw. Uses node_options to inject…

Enumerates AWS environments for secrets by scanning EC2 userdata, Lambda environment variables and source code, and CodeBuild instances for…

Agentic memory for CTI in Python — STIX knowledge graphs, threat-actor alias resolution, offline-first RAG, MCP server for Claude Code and LangChain…

Fast, accurate subdomain takeover scanner with zero false positives. Detects vulnerable subdomains, collects metadata (IP, CNAME, title, status…

CVE-2018-12031 | LFI in Eaton Intelligent Power Manager v1.6 allows an attacker to include a file, it can lead to sensitive information disclosure,…

Cisco ASA Software and ASDM Security Research

LSTAR - CobaltStrike Translated to EN

Fake exploit tool, designed to rickroll users attempting to actually exploit.


A Rust CLI tool that recursively discovers Git repositories, captures state changes, generates diffs, extracts code elements with full snippets, and…

Extract URLs, paths, secrets, and other interesting bits from JavaScript

Fast GitHub recon tool. Scans for leaked secrets across all of GitHub, not just known repos and orgs. Support for GitHub dorks.

Finding exposed secrets and personal data in GitLab

🧬 Extract and analyze contributors info from git repos