
vhosts-sieve
Searching for virtual hosts among non-resolvable domains

Searching for virtual hosts among non-resolvable domains

Offensive Security recon tool

Log4Shell (CVE-2021-44228) minecraft demo. Used for education fairs

how detect CVE-2020-2551 poc exploit python Weblogic RCE with IIOP

An authentication bypass was recently discovered (https://www.webarxsecurity.com/vulnerability-infinitewp-client-wp-time-capsule/) on WP Time Capsule…

This repo contains all the work surrounding the development of the PoC for CVE-2024-48208, and how a simple OOB(Out-of-bound) read can result in jail…

a lightweight JavaScript snippet showcasing how unauthorized password changes can be triggered on vulnerable Fortinet FortiSwitch GUI endpoints.

Generates x86, x64, or AMD64+x86 position-independent shellcode that loads .NET Assemblies, PE files, and other Windows payloads from memory and runs…

D(COM) V(ulnerability) S(canner) AKA Devious swiss army knife - Lateral movement using DCOM Objects

AI-native code security auditor on AgentField that proves exploitability with verdicts, traces, and actionable evidence.

CVE-2026-25243 — Redis RESTORE zipmap double-free → remote code execution (ASLR on).

Proof-of-concept exploit for CVE-2017-0108, a remote code execution vulnerability in Microsoft Windows Graphics Component, triggered via crafted…

Exploit for GitLab CVE-2023-7028: password reset bypass via dual email verification, allowing unauthorized account takeover. Includes affected…

Exploit PoCs for MARMALDE 2 (CVE-2025-67780) vulnerability in Starlink Dishes

PoC demonstrating SHA-1 code signing forgery and missing High Entropy ASLR in CyberGhostVPN installer, enabling trust bypass and predictable memory…

Proof-of-concept exploit for CVE-2021-34600, demonstrating a key generation vulnerability in Telenot access control systems using Proxmark3 RFID…

Unauthenticated RCE scanner for FortiSandbox CVE-2026-39808 with canary-based verification, command execution, and pipeline integration for mass…