
SSRF-Testing
SSRF (Server Side Request Forgery) testing resources

SSRF (Server Side Request Forgery) testing resources

A Terraform to deploy vulnerable app and a JDNIExploit to work with CVE-2021-44228

POC for CVE-2023-34362 affecting MOVEit Transfer

All about bug bounty (bypasses, payloads, and etc)

Automated Mass Exploiter

🔥 React2Shell Toolkit - CVE-2025-55182 & CVE-2025-66478

Professional-grade Denial of Service (DoS) exploitation framework for CVE-2025-55184 targeting React Server Components. Features 8 attack modes, WAF…

Exploit for CVE-2024-4040 – Authentication bypass in CrushFTP via CrushAuth cookie and AWS-style header spoofing. Stealthy Python PoC with secure…

PHP poc, exploit for CVE-2025-9074

A tool that implements the Golden SAML attack

a CLI for ephemeral penetration testing

The C2 Cloud is a robust web-based C2 framework, designed to simplify the life of penetration testers. It allows easy access to compromised…

Python-based framework for generating Golden SAML tokens, Kerberos tickets, and Azure Access Tokens to exploit federated identity systems and…

All-in-one penetration testing toolkit aggregating 185+ tools across 20 categories including information gathering, web & wireless attacks, phishing,…

Custom Bash and Python scripts used to automate various penetration testing tasks including recon, scanning, enumeration, and malicious payload…