
qyvora-toha3ee
Go-based network exploitation and MITM framework for authorized penetration testing, network reconnaissance, traffic interception, wireless security…

Go-based network exploitation and MITM framework for authorized penetration testing, network reconnaissance, traffic interception, wireless security…

Repository for the LinkScope Client software.

Checks all maintainers of all NPM and Pypi packages for hijackable packages through domain re-registration

Scans project dependencies for dependency confusion vulnerabilities and checks package owner email takeover risks across multiple registries (npm,…

Multithreaded reverse IP lookup tool for discovering domains hosted on the same IP address.

PoC exploits for CVE-2026-52824 (GHSA-jr9p-4h4j-6c58) — Kimai time-tracking default APP_SECRET authentication bypass affecting versions ≤ 2.57.0

Uses Shodan API to pull down C2 servers to run known exploits on them.

Scripts to detect Fast-Flux and DGA using DNS query responses


PoC, Hunting React2Shell about CVE-2025-55182

CVE-2022-26134, an OGNL injection vulnerability exists that would allow an unauthenticated attacker to execute arbitrary code on a Confluence Server…

Shodan-based scanner that discovers FortiGate SSL VPN devices and tests them for CVE-2024-21762 vulnerability, displaying organization and country…

Fast passive subdomain enumeration tool.

Privacy-first behavioral intelligence framework for multi-platform analysis and sociodynamic research.

A proof of concept demonstrating how to use the Hinge dating app as a C2.

Pulse Secure SSL VPN exploit (CVE-2019-11510) using hosts retrieved from Shodan API.

Curated, community-maintained directory of data broker opt-out instructions to help individuals remove personal information from people-search sites…