
traveller-htb
Traveller is an Easy Linux machine featuring a Joomla 4.2.7 travel booking website vulnerable to CVE-2023-23752, an unauthenticated REST API…

Traveller is an Easy Linux machine featuring a Joomla 4.2.7 travel booking website vulnerable to CVE-2023-23752, an unauthenticated REST API…

An offensive/defense security toolset for discovery, recon and ethical assessment of AI Agents

Vatilon-based IP cameras expose internal web directories without authentication, leading to information disclosure.

FAST WEB APPLICATION VULNERABILITY SCANNER written in python3

A lightweight PowerShell tool for assessing the security posture of Microsoft Entra ID environments. It helps identify privileged objects, risky…

Fast service fingerprinting CLI for 170+ protocols (TCP/UDP/SCTP) - built by Praetorian


POC for CVE-2021-34429 - Eclipse Jetty 11.0.5 Sensitive File Disclosure

Proof-of-concept exploit for CVE-2021-21234, a directory traversal vulnerability in spring-boot-actuator-logview allowing unauthorized file read via…

Local Linux enumeration script that identifies privilege escalation vectors including misconfigurations, world-writable files, clear-text passwords,…

CloudGoat is Rhino Security Labs' "Vulnerable by Design" AWS deployment tool

Controlled penetration testing lab demonstrating CVE-2011-2523 exploitation and mitigation techniques.

AD Miner is an Active Directory audit tool that leverages cypher queries to crunch data from the #Bloodhound graph database to uncover security…

Mounts AWS resources as a local filesystem for infrastructure exploration, security auditing, and configuration analysis using standard Unix tools…

KcMapper is a security auditing tool for Keycloak. It exports your Keycloak configuration (realms, clients, users, roles, etc.) into a Neo4j graph…

eBPF + nftables + DNS proxy egress enforcement for GitLab Runner CI/CD job containers — community edition data plane https://leitwacht.eu/

VulnHub DC-1 boot-to-root — exploiting CVE-2018-7600 (Drupalgeddon2) for RCE, extracting DB credentials from settings.php, forging admin password…

AWS AMAZON S3 Bucket Takeover Scanner & Claim Tool