
BruteLoops
Protocol agnostic online password guessing API.

Protocol agnostic online password guessing API.

Know the dangers of credential reuse attacks.

Simple python3 script to automate CVE-2018-9995

CVE-2022-40032: Simple Task Managing System - 'login' and 'password' SQL Injection (Unauthenticated)

Proof-of-concept exploit for CVE-2025-4334, a privilege escalation vulnerability in the Simple User Registration WordPress plugin (<= 6.3), allowing…

Python exploit for CVE-2023-7028, abusing GitLab password reset poisoning to take over accounts including administrators via crafted email requests.

WordPress Simple Business Directory Pro Plugin < 15.6.9 is vulnerable to a high priority Privilege Escalation

WordPress Simple Link Directory Plugin < 14.8.1 is vulnerable to a high priority Broken Authentication

simple CVE-2017-7921 rewrite in python by me. for educational purposes only!


Common password pattern generator using strings list

User Enumeration vulnerability in Kaiten (workflow management system)

CVE-2026-8206: Kirki Customizer Framework - Unauthenticated Account Takeover (CVSS 9.8)

Bludit 3.9.2 - bruteforce bypass - CVE-2019-17240

WPScan rewritten in Python + some WPSeku ideas

Python library for low-level network protocol manipulation, featuring SMB, MSRPC, Kerberos, and WMI implementations with tools for authentication…

SharpSploit is a .NET post-exploitation library written in C#

BOF for Kerberos abuse (an implementation of some important features of the Rubeus).