
SMSOTPBOT
OTP BOT Bypass SMS verifications from Paypal, Instagram, Snapchat, Google, 3D Secure, and many others...

OTP BOT Bypass SMS verifications from Paypal, Instagram, Snapchat, Google, 3D Secure, and many others...

Advanced PostgreSQL database enumeration tool exploiting CVE-2024-39309 in Parse Server - Comprehensive SQL injection exploitation for security…

Go-based PoC for Ghost CMS Content API SQL injection (CVE-2026-26980). Verifies vulnerability, extracts admin credentials and API secrets, and…

Active Directory relay attack detection and enumeration tool. Scans for NTLM relay opportunities, detects CVE-2025-33073, CVE-2025-54918,…

Python-based proof-of-concept exploit for CVE-2023-40028, a symlink upload vulnerability in Ghost CMS enabling authenticated arbitrary file read via…

Blind SQL injection exploit for Ghost CMS (CVE-2026-26980) targeting unauthenticated Content API to extract credentials, API keys, and database…

Proof-of-concept exploit for CVE-2023-40028 enabling authenticated arbitrary file read in Ghost CMS via symlink upload. Includes interactive shell…

Proof-of-concept exploit for CVE-2023-40028, an arbitrary file read vulnerability in Ghost CMS, allowing authenticated users to read host files via…

A Directory Traversal attack (also known as path traversal) aims to access files and directories that are stored outside the intended folder.

Pyrescom Termod proof-of-concept code for CVE-2020-23160, CVE-2020-23161 and CVE-2020-23162