
Bludit-3-9-2-bb
Bludit 3.9.2 - bruteforce bypass - CVE-2019-17240

Bludit 3.9.2 - bruteforce bypass - CVE-2019-17240
Targets versions ≤2.7.5 vulnerable to CVE-2023-5359

FlatPress CMS v1.3.1 1.3 was discovered to use insecure methods to > store authentication data

Project with sublist3r, massan, CVE-2018-15473, ssh bruteforce, ftp bruteforce and nikto.

DEPRECATED, bettercap developement moved here: https://github.com/bettercap/bettercap

Responder is a LLMNR, NBT-NS and MDNS poisoner, with built-in HTTP/SMB/MSSQL/FTP/LDAP rogue authentication server supporting NTLMv1/NTLMv2/LMv2,…

WPScan rewritten in Python + some WPSeku ideas

Spray365 makes spraying Microsoft accounts (Office 365 / Azure AD) easy through its customizable two-step password spraying approach. The built-in…

.NET console application that exploits CVE-2018-9995 vulnerability

Password attacks and MFA validation against various endpoints in Azure and Office 365

WordPress Ultimate Member plugin <= 2.13.1 - Privilege Escalation vulnerability

Python proof-of-concept exploit that bypasses authentication in phpBB 3.3.16 and below by forging session cookies to gain admin access.

Using this script, you can enumerate Usernames and passwords of Nosql(mongodb) injecion vulnerable web applications.

The objective is to conduct a full-scale security assessment of a WordPress-based web application, culminating in a complete server compromise. The…

OWA Password Sprayer

Welcome to the page where you will find each trick/technique/whatever I have learnt in CTFs, real life apps, and reading researches and news.

Penetration Testing Reference Bank - OSCP / PTP & PTX Cheatsheet

A curated list of penetration testing and ethical hacking tools, organized by category. This compilation includes tools from Kali Linux and other…