
RTSPbrute
Tool for RTSP that brute-forces routes and credentials, makes screenshots!

Tool for RTSP that brute-forces routes and credentials, makes screenshots!

This tool is a modern evolution of older PoCs like those for CVE-2017-7921 and ICSA-17-124-01, updated for 2025 with live console output, threading…

This module sniff username and password of unprotected protocols.

Initialized & connected PostgreSQL to Metasploit. Reconnoitered 10.1.16.0/24 with Nmap and imported results. Enumerated hosts/services using SYN, SMB…

Atlassian Confluence Server and Data Center: CVE-2022-26138

Exploit woocommerce SQLI and grab user and password hash

CVE-2026-34474: unauthenticated ETHCheat=1 requests leak the admin password and Wi-Fi PSK from ZTE H298A/H108N routers.

An unauthenticated data extraction vulnerability in Kyocera printers, which allows for recovery of cleartext address book and domain joined passwords.

CVE-2017-7921 exploit. Allows admin password retrieval and automatic snapshot download.

It is possible to view the MD5 hash of the admin password and other attributes without authentication, even after initial setup and password change.…

Project with sublist3r, massan, CVE-2018-15473, ssh bruteforce, ftp bruteforce and nikto.

Lockphish it's the first tool (07/04/2020) for phishing attacks on the lock screen, designed to grab Windows credentials, Android PIN and iPhone…

Automated Penetration Testing Framework - Open-Source Vulnerability Scanner - Vulnerability Management

Know the dangers of credential reuse attacks.

Notes about attacking Jenkins servers

Modern tactical exploitation toolkit.

A tool for generating multiple types of NTLMv2 hash theft files by Jacob Wilkin (Greenwolf)

All-in-One Toolkit for BruteForce Attacks