
cve-2026-15748
Scans WordPress Forminator for CVE-2026-15748 unauthenticated RCE. Detects vulnerable sites, crawls forms, extracts nonces, runs safe upload tests.

Scans WordPress Forminator for CVE-2026-15748 unauthenticated RCE. Detects vulnerable sites, crawls forms, extracts nonces, runs safe upload tests.


Exploit script for CVE-2021-4191 that enumerates GitLab users via the GraphQL API, useful for security assessments and validating exposure.

Exploit for CVE-2017-5487 to enumerate WordPress user accounts via the REST API, extracting sensitive information from vulnerable 4.7 installations.

Testing and exploitation tool for Drupalgeddon 2 (CVE-2018-7600)

Network packet and pcap file crafting/sniffing/manipulation/visualization security tool. Originally forked from scapy in 2015 and providing python3…


💣 Impulse Denial-of-service ToolKit

Python script to check for CVE-2023-2745 vulnerability by sending crafted HTTP requests to a target URL and analyzing responses.

Mass Scanner For Drupal Exploit CVE-2026-9082

Free email OSINT tool, 2500+ platforms, identity clustering, breach detection. No API keys required. pip install mailaccess

Modular OSINT tool that aggregates email, phone, IP, and social media intelligence via pip packages. Automates data collection and analysis for…

Find web directories without bruteforce

Neto | A tool to analyse browser extensions

Use regular expressions to get sensitive information from a given repository (GitHub, pip or npm).

Active Directory information dumper via LDAP

Identify technologies used on websites.

search for hosts info with shodan