
CVE-2024-28000
Hands-on exploit lab for CVE-2024-28000 — unauthenticated privilege escalation in LiteSpeed Cache (WordPress plugin, <=6.3.0.1). Spins up a…

Hands-on exploit lab for CVE-2024-28000 — unauthenticated privilege escalation in LiteSpeed Cache (WordPress plugin, <=6.3.0.1). Spins up a…

User Enumeration vulnerability in Kaiten (workflow management system)

Full penetration testing workflow: credential brute force, SSH access and privilege escalation (CVE-2021-4034)

A script that gives you the credentials of a Pterodactyl panel vulnerable to CVE-2025-49132

Brute-force attack tool against WPS registrar PINs to recover WPA/WPA2 passphrases, supporting online brute force and offline Pixie Dust attacks on…

This python file will decrypt the configurationFile used by hikvision cameras vulnerable to CVE-2017-7921.

Deployable AWS-hosted Active Directory pentest lab with domain controller and vulnerable MSSQL; practice S4U2Self abuse, SQL brute force, and RCE.

Hands-on reproduction of CVE-2024-28000 in LiteSpeed Cache using an isolated WordPress lab. Includes reconnaissance, vulnerable hash recovery,…

Proof-of-concept for CVE-2023-37755: hardcoded admin credentials (admin/admin) in i-doit Pro 25 and below, enabling unauthorized admin login via the…

HT-WPS Breaker (High Touch WPS Breaker)

Proof of Work of CVE-2023-23397 for vulnerable Microsoft Outlook client application.

This is the exploit of CVE-2019-17240.

Proof-of-concept for CVE-2026-31282: Totara LMS login page access control bypass enabling unauthenticated brute-force credential attacks. Includes…

WordPress Simple Business Directory Pro Plugin < 15.6.9 is vulnerable to a high priority Privilege Escalation

Pure-Python toolkit for Kerberos-based attacks including ASREProast, SPNroast, and LDAP enumeration to identify and exploit vulnerable Active…

Alibab-Nacos-Unauthorized-Reset PWD

Python exploit for CVE-2018-9995 that retrieves exposed DVR credentials by bypassing authentication on vulnerable web interfaces.