
CVE-2026-43914-PoC
PoC for CVE-2026-43914: Vaultwarden <1.35.4 email-2FA brute-force bypass password oracle. Stdlib-only Python.

PoC for CVE-2026-43914: Vaultwarden <1.35.4 email-2FA brute-force bypass password oracle. Stdlib-only Python.

Python exploit for CVE-2023-7028, abusing GitLab password reset poisoning to take over accounts including administrators via crafted email requests.

Python exploit script for CVE-2025-10658: brute-forces 6-digit OTP in WordPress SupportCandy guest login to achieve full account takeover via…

A simple Python script that reads a text file with lots of e-mails and passwords, and tries to check if those credentials are valid by trying to…

Python script that acts like the original sudo binary to fool users into entering their passwords

Cross-platform credential recovery tool that extracts stored passwords from browsers, email clients, databases, system mechanisms, and network…

This is a keylogger that collects all the data and e-mail it in a set time with system information which includes device S/N and hardware specs,…

Python script for sending e-mails with CVE-2023-23397 payload using SMTP

eventin <= 4.0.34 - privilege escalation via user email change / account takeover for authenticated contributor+

Educational lab demonstrating detection and mitigation of CVE-2023-32243 privilege escalation in WordPress Essential Addons for Elementor, using…

Know the dangers of credential reuse attacks.

An #OSINT Framework to perform various recon techniques on Companies, People, Phone Number, Bitcoin Addresses, etc., aggregate all the raw data, and…

A Golang implant that uses Slack as a command and control server

Exploit for CVE-2020-1472 (Zerologon) that resets domain controller machine account password, enabling credential dumping and privilege escalation to…

Scripts to make password spraying attacks against Lync/S4B, OWA & O365 a lot quicker, less painful and more efficient

Improved SMTP Checker / SMTP Cracker with proxy-support, inbox test and many more features.

Proof of Work of CVE-2023-23397 for vulnerable Microsoft Outlook client application.

OSINT Project. Collect information from a mail. Gather. Profile. Timeline.