
CVE-2026-30252
The ZenShare Suite application is vulnerable by a Reflected Cross-Site Scripting (XSS) vulnerability, affecting web application login and recovery…

The ZenShare Suite application is vulnerable by a Reflected Cross-Site Scripting (XSS) vulnerability, affecting web application login and recovery…

This repository contains the results of my August 2020 research of Tiandy's IPC/NVR firmware. I found two vulnerabilities that could be used to…



Detailed disclosure of CVE-2025-22963, a CSRF vulnerability in Teedy <= v1.11 enabling account takeover via forced user information changes.

eScan Management Console version 14.0.1400.2281 contains privilege escalation via `GetUserCurrentPwd` function lets attackers retrieve any user's…

CVE-2025-9728: Reflected XSS in Login Form (Email & Password Fields) Vvveb CMS v1.0.7.2

Cross Site Scripting (XSS) at the "Reset Password" page form of Priority Enterprise Management System v8.00 allows attackers to execute javascript on…

Detailed CVE-2026-8697 writeup with POC exploit for a login rate-limit bypass on TP-Link Archer C64 routers via a debug SSH service, enabling…

An intelligent agent for testing password strength, identifying vulnerabilities, and exploring patterns in password creation.

Walkthrough and PoC of File path traversal vulnerability(CVE-2026-36851) for UnPoller 2.33.0

A Deep Learning Approach for Password Guessing (https://arxiv.org/abs/1709.00440)

An open source implementation of Apple's Wi-Fi Password Sharing protocol in Python.

Curated wordlists, hashcat rules, and masks derived from billions of real passwords, with statistical analysis and research slides from RootedCON…

A curated list of awesome tools, research, papers and other projects related to password cracking and password security.

Mini-paper on CVE-2017-2751, HP EFI password extraction.