
PoC-CVE-2025-24071
Python PoC for CVE-2025-24071 that crafts a .library-ms file to coerce Windows Explorer into leaking NetNTLMv2 hashes over SMB for capture and…

Python PoC for CVE-2025-24071 that crafts a .library-ms file to coerce Windows Explorer into leaking NetNTLMv2 hashes over SMB for capture and…

A tool for retrieving login credentials from Netwave IP cameras using a memory dump vulnerability (CVE-2018-17240)

A Python library to utilize AWS API Gateway's large IP pool as a proxy to generate pseudo-infinite IPs for web scraping and brute forcing.

Hikvision IP camera access bypass exploit, developed by golang.

SEt framework

Security reconnaissance and assessment tool for identifying potentially exposed IP cameras by analyzing open ports, service configurations, and…

Xiongmai XM530 IP Camera Hardcoded RTSP Credentials Exposure

Decrypts Hikvision IP camera configuration files extracted via CVE-2017-7921 authentication bypass, recovering user credentials from weakly encrypted…

Refactored & improved CredKing password spraying tool, uses FireProx APIs to rotate IP addresses, stay anonymous, and beat throttling

Hicip IP admin password reset script using CVE-2020-9529. This is made for educational purposes only of course.

Leverage WindowsApp createdump tool to obtain an lsass dump

Automated exploit for CVE-2024-24919 with API-based vulnerable IP discovery and LFI brute-force using custom wordlists. Designed for educational…

A C# implementation of dumping credentials from Windows Credential Manager

A PoC exploit for CVE-2017-8225 - GoAhead System.ini Leak

Some Assmann manufactured IP-Cams leak the administrator password in their backup.

Decrypts Hikvision IP camera configuration files extracted via CVE-2017-7921 authentication bypass, revealing user credentials and device settings.

Exploit tool for CVE-2018-9995 that extracts credentials from vulnerable DVR devices via Google dorking and direct IP access.

Exploit tool for CVE-2017-8225 targeting IP cameras. Scans for vulnerable devices and performs credential brute-forcing to gain unauthorized access.