
raider
OWASP Raider: a novel framework for manipulating the HTTP processes of persistent sessions

OWASP Raider: a novel framework for manipulating the HTTP processes of persistent sessions

Tools for auditing WAFS

XSScope is one of the most powerful and advanced GUI Framework for Modern Browser exploitation via XSS.

Exploit for CVE-2022-22965 (Spring4Shell) targeting Spring Framework versions vulnerable to remote code execution via classLoader manipulation.

Log4Shell (CVE-2021-44228) PoC Application

CVE-2025-64328 FreePBX Authenticated Command Injection in the framework module.

Collection of exploits targeting OSGi Java framework versions 3.1.1–3.20 for penetration testing and vulnerability exploitation.

A complete framework for exploiting the vulnerability CVE-2025-55182

Demonstrable Proof of Concept Exploit for Spring4Shell Vulnerability (CVE-2022-22965)

PLEASE USE NEW VERSION: https://github.com/kgretzky/evilginx2

Modular web application reconnaissance framework for automated subdomain enumeration, directory brute-forcing, and extraction of endpoints, JS URLs,…

Proof-of-concept exploit for CVE-2024-38820, demonstrating locale-dependent case conversion bypass of Spring Framework DataBinder disallowedFields…

Python 3 implementation of an existing CVE-2011-3556 proof of concept (PoC).

Python and Powershell internal penetration testing framework

Deploys realistic virtual SCADA/ICS testbeds with IEC 60870-5-104 and OPC-UA nodes, enabling attack simulations, legitimate packet generation, and…

MAAD Attack Framework - An attack tool for simple, fast & effective security testing of M365 & Entra ID (Azure AD).

BlueBorne Exploits & Framework This repository contains a PoC code of various exploits for the BlueBorne vulnerabilities. Under 'android' exploits…