
cyclepatrol
Bash tool for on-foot Wi-Fi security checks in a loop, with evidence reports.

Bash tool for on-foot Wi-Fi security checks in a loop, with evidence reports.

Full black-box penetration test against SecOS:1 (VulnHub) — CSRF exploitation, privilege escalation via CVE-2015-1328 (OverlayFS), post-exploitation

Wordlist Bruteforcer for GoFile (gofile.io) Download Passwords

Decrypt Ruijie ReyeeOS firmware (v1/v2) and encrypted config backups; recover plaintext passwords

Python exploit for CVE-2026-89012, a Dolibarr SQL filter denylist bypass that uses a blind-boolean oracle to extract password hashes and API keys via…

HackTheBox Devvortex walkthrough covering subdomain fuzzing, Joomla API enumeration, template-based web shell, bcrypt hash cracking, and Apport-CLI…

Multi-module offensive security toolkit for SOCKS5 proxy chaining, port scanning, DNS enumeration, hash cracking, reverse shell generation,…

Retrieve AD accounts description and search for password in it

Course repository for PowerShell for Pentesters Course

A list of awesome penetration testing tools and resources.

HTB OneTwoSeven full walkthrough: deterministic creds, chroot symlink escape, rewrite-rule bypass RCE, CVE-2024-1086 to root

tool for generating wordlists or extending an existing one using mutations.

Local AI powered red teamer on a phone


Automated Cisco SNMP Enumeration, Brute Force, Configuration Download and Password Cracking

NLA Honeypot Associated Research

Docker Enumeration, Escalation of Privileges and Container Escapes (DEEPCE)

Proof-of-concept exploit and vulnerability disclosure for HiSilicon hi3520d DVR/NVR devices. Demonstrates RCE via web interface, backdoor…