
netfence
Like Envoy xDS, but for eBPF filters

Like Envoy xDS, but for eBPF filters

Validates Google Maps API keys against 21 endpoints, revealing exposed services with PoC URLs, proxy support, and quiet mode for focused auditing.

Supermicro IPMI/BMC Cleartext Password Scanner

Go-based CLI tool that scans codebases for launch readiness, detecting missing configuration, security hygiene issues, secret leaks, and integration…

A program for testing WAF functionality

Suite of programs meant to aid in bug hunting and security assessments

ActionScript Proof of Concept to perform cross-domain reads

Security checks for your researches

泛微ecology OA系统接口存在数据库配置信息泄露漏洞

[Just for fun] Find exposed AWS keys (VALID KEYS ONLY) on github

find sensitive data leaking from ServiceNow instances.

Detect security issues in an Apache CouchDB server

Finds internet-exposed resources in an AWS account

Security advisory: Azure APIM Developer Portal allows cross-tenant account registration by bypassing UI signup restrictions. Reported to MSRC twice -…

ActiveMQ系列漏洞探测利用工具,包括ActiveMQ 默认口令漏洞及ActiveMQ任意文件写入漏洞(CVE-2016-3088),支持批量探测利用。

Service-Now Article Bruteforcer

CVE-2021-40875: Tools to Inspect Gurock Testrail Servers for Vulnerabilities related to CVE-2021-40875.

CVE-2023-22515 - Broken Access Control Vulnerability in Confluence Data Center and Server