
kcmd
Kankun Smart Socket Hijacker and Sniffer. The kankun smart socket and its mobile app use a hardcoded AES 256 bit key to encrypt and decrypt…

Kankun Smart Socket Hijacker and Sniffer. The kankun smart socket and its mobile app use a hardcoded AES 256 bit key to encrypt and decrypt…

This vulnerability allows an attacker to bypass the credentials brute-force prevention mechanism of the Embedded Web Server (interface) of more than…

CVE-2026-55579 – Unauthenticated RCE in Pheditor via hardcoded default password "admin". Full Python exploit with file upload & terminal execution.…

(CVE-2018-9995) Get DVR Credentials

The IoT security toolkit to help identify IoT related dashboards and scan them for default passwords and vulnerabilities.

CVE-2023-43261 - Credential Leakage Through Unprotected System Logs and Weak Password Encryption

Authenticated remote code execution exploit for CERIO routers (DT300N, DT100G, AMR-3204, WMR-200N) using vendor default credentials. Python PoC…

A key generator for Zyxel VMG8825-T50

Supporting material for the "Hunting Bugs In The Tropics" DEFCON 30 talk

This repository holds interesting bits and pieces related to research I performed on wireless presentation devices manufactured by Awindinc and…

Check the default pwd of product via checklist.

CVE-2018-11311 | mySCADA myPRO 7 Hardcoded FTP Username and Password Vulnerability

Exploit for CVE-2017-14262 targeting Samsung NVR devices: extracts admin MD5 password hash via unauthenticated CGI request and logs in with the hash…

Hikvision IP camera access bypass exploit, developed by golang.

A vulnerability in fiberhome GPON ONU HG6145F1 RP4423 allows the device's factory default Wi-Fi password (WPA/WPA2 pre-shared key) to be predicted…

Simulates a Matter commissioning code brute-force attack (CVE-2026-23005) using Python to demonstrate missing rate limiting and lockout on 8-digit…

CVE-2018-9995_Batch_scanning_exp

By the Way is an exploit that enables a root shell on Mikrotik devices running RouterOS versions: