
rpi-hunter
Auto discover and exploit LAN raspberry pi's

Auto discover and exploit LAN raspberry pi's

A Web Vulnerability Scanner and Patcher

A tool to generate media files with malicious metadata

A tool for detect&exploit vmware product log4j(cve-2021-44228) vulnerability.Support VMware HCX/vCenter/NSX/Horizon/vRealize Operations Manager

A phased, evasive Path Traversal + LFI scanning & exploitation tool in Python

Tool to manipulate and weaponize Office Open XML documents.

log4J burp被扫插件、CVE-2021-44228、支持dnclog.cn和burp内置DNS、可配合JNDIExploit生成payload

Generates target specific word lists for Fuzzing with fuff

Tools for investigating Log4j CVE-2021-44228

Proof-of-concept exploit for CVE-2022-42889 (Text4Shell) in Apache Commons Text, with manual and mass exploitation scripts using script, URL, and DNS…

Proof-of-concept exploit for CVE-2022-44268 enabling arbitrary file read via poisoned PNG images uploaded to vulnerable ImageMagick instances.…

Remot3d: is a simple tool created for large pentesters as well as just for the pleasure of defacers to exploit a system or server that runs a PHP…

Remote Java classpath enumeration via deserialization

A PoC of CVE-2025-24071 / CVE-2025-24054, A windows vulnerability that allow get NTMLv2 hashes

CVE-2026-64638: WordPress Pre-auth XSS → RCE (XSS2Shell) PoC

CVE-2026-63030 (RCE) + CVE-2026-60137 (SQLi)

Self-hosted SSRF redirect, payload, callback, and DNS workbench

woodpecker-plugins