
hijagger
Checks all maintainers of all NPM and Pypi packages for hijackable packages through domain re-registration

Checks all maintainers of all NPM and Pypi packages for hijackable packages through domain re-registration


Python2.7

PoC exploits for CVE-2026-52824 (GHSA-jr9p-4h4j-6c58) — Kimai time-tracking default APP_SECRET authentication bypass affecting versions ≤ 2.57.0

This repository documents the process of identifying, analyzing, and gathering Open Source Intelligence (OSINT) on a specific security vulnerability…

Uses Shodan API to pull down C2 servers to run known exploits on them.

Scripts to detect Fast-Flux and DGA using DNS query responses


PoC, Hunting React2Shell about CVE-2025-55182

CVE-2022-26134, an OGNL injection vulnerability exists that would allow an unauthenticated attacker to execute arbitrary code on a Confluence Server…

Recon-Scan: open‑source passive reconnaissance with AI‑powered security analysis. Zero‑touch, developer‑first, and privacy‑focused.

😱 A curated list of amazingly awesome OSINT

Forensic evidence dossier for Operation Black Hole - Investigating fraudulent Falla app ecosystem (TRON blockchain, admin panel exposure,…

Hermes — an ephemeral, Docker-powered OSINT framework for testing, tinkering, and secure investigative automation.

Osinton Its an open-source project running using SERP API and ollama mistral