
Log4j-Scanner-Exploit
Script en bash que permite identificar la vulnerabilidad Log4j CVE-2021-44228 de forma remota.

Script en bash que permite identificar la vulnerabilidad Log4j CVE-2021-44228 de forma remota.

Example on how to injection(currently under work) of keylogger js through Safari Extension(that part done)

SOPlanning 1.52.00 CSRF/SQLi/XSS (CVE-2024-33722, CVE-2024-33724)

Python script that generates a PNG image exploiting CVE-2022-44268 to embed and leak local file paths via ImageMagick metadata parsing.

Free Burp Collaborator alternative- OOB interaction capture (HTTP/HTTPS/DNS) with SQLite & exfil reassembly

Collection of pentesting scripts

PowerShell wrapper bundling 50+ C# offensive security tools for post-exploitation, privilege escalation, credential dumping, lateral movement, and…

Comprehensive penetration testing cheat sheet for PWK/OSCP exam preparation, covering privilege escalation, password cracking, payload generation,…

Linux post exploitation framework written in bash designed to assist red teams in persistence, reconnaissance, privilege escalation and leaving no…

Modular exploitation framework for penetration testing, featuring automated payload generation, reconnaissance modules, and post-exploitation…

AI-powered assistant for penetration testers that generates payloads, analyzes code, performs reconnaissance, and executes command-line actions to…

Red team operations management platform automating infrastructure deployment, C2 setup, phishing campaigns, and reconnaissance with integrated tool…

A unified console to perform the "kill chain" stages of attacks.

Custom Bash and Python scripts used to automate various penetration testing tasks including recon, scanning, enumeration, and malicious payload…

All about bug bounty (bypasses, payloads, and etc)