
Joomla-CMS-Full-Lifecycle-Pentest
A comprehensive full-lifecycle penetration testing project on Joomla 4.2.5 exploiting CVE-2023-23752 inside a Dockerized lab environment

A comprehensive full-lifecycle penetration testing project on Joomla 4.2.5 exploiting CVE-2023-23752 inside a Dockerized lab environment

Legion is an open source, easy-to-use, super-extensible and semi-automated network penetration testing tool that aids in discovery, reconnaissance…

A collection of hacking tools, resources and references to practice ethical hacking.


CVE-2022-40297 - Proof of Concept: Privilege escalation in Ubuntu Touch 16.04 - by PIN Bruteforce

Unlock an Android phone (or device) by bruteforcing the lockscreen PIN. Turn your Kali Nethunter phone into a bruteforce PIN cracker for Android…

Hacking tools pack & backdoors generator.

Release of the sandy framework.

The LAZY script will make your life easier, and of course faster.

Crowbar is brute forcing tool that can be used during penetration tests. It is developed to support protocols that are not currently supported by…

Penetration tests on SSH servers using brute force or dictionary attacks. Written in C.

Modular credential validation framework with active and passive (regex-based) checking modes for penetration testers. Supports multiple services via…

User enumeration and password spraying tool for testing Azure AD

Automated WiFi security testing script that captures handshakes and performs deauthentication attacks using airmon-ng and wifite for wireless…

Framework for penetration testing. The software can identify everything from cross-site scripting to SQL injection. Developers can also use this…

A Windows domain authentication library for testing credentials

Complete credential attack suite for authorized security testing — SSH, FTP, Web Login, Bruteforce, Dictionary attacks

Automated exploit chain for CVE-2026-63030 / CVE-2026-60137 — unauthenticated blind SQLi via WordPress REST batch route-confusion. Dumps user hashes,…