
CVE-2025-22870
Proof-of-concept for CVE-2025-22870 demonstrating HTTP proxy bypass in vulnerable versions (<0.36.0) of golang.org/x/net/http/httpproxy. Exploits…

Proof-of-concept for CVE-2025-22870 demonstrating HTTP proxy bypass in vulnerable versions (<0.36.0) of golang.org/x/net/http/httpproxy. Exploits…

Unauthenticated SSRF in Xiaomi Mi Router 4A Gigabit Edition (firmware 3.0.24) via Host Header Injection — CVE-2026-26898

Metasploit modules in testing

A comprehensive Python testing tool for CVE-2023-44487, the HTTP/2 Rapid Reset vulnerability. This enhanced version provides granular control over…

Efficient and advanced man in the middle framework

Researched and executed real-world CVE exploits in a controlled sandbox: CVE-2000-0168 DoS on Windows 95, ARP Spoofing with NTLMv2 credential…



Unified application gateway providing reverse proxy, WAF, CC defense, OAuth2 authentication, ACME certificate automation, and GSLB for secure,…

DotDotPwn - The Directory Traversal Fuzzer

Public repository for improvements to the EXTRABACON exploit

CVE-2020-10749 PoC (Kubernetes MitM attacks via IPv6 rogue router advertisements)

libssh CVE-2018-10933


Cisco Adaptive Security Appliance and FTD Unauthorized Remote File Reading

A comprehensive all-in-one Python-based Proof of Concept script to discover and exploit a critical authentication bypass vulnerability…

Scanner PoC for CVE-2019-0708 RDP RCE vuln