
Zerologon_CVE-2020-1472
Step-by-step lab guide for simulating, detecting, and mitigating the Zerologon vulnerability (CVE-2020-1472) on Windows Server 2016 using Kali Linux…

Step-by-step lab guide for simulating, detecting, and mitigating the Zerologon vulnerability (CVE-2020-1472) on Windows Server 2016 using Kali Linux…

A CLI tool for detecting CVE-2023-20048 vulnerability in Cisco Firepower Management Center.

Checks if a website is vulnerable to the Shellshock (CVE-2014-6271) Bash vulnerability by sending crafted requests and reporting the result.

Unauthenticated NTLM endpoint reconnaissance tool that decodes Type-2 challenges across HTTP, SMB, MSSQL, SMTP, IMAP, POP3, NNTP, LDAP, and RDP to…

One-pass anonymous Active Directory enumeration over SAMR and LSARPC — null session, no credentials, with structured reusable output.

Scripts to make password spraying attacks against Lync/S4B, OWA & O365 a lot quicker, less painful and more efficient

CVE-2023-6241 for Pixel 8

aztarna, a footprinting tool for robots.

Manual black-box penetration test of MagnoHost and MeteorCloud infrastructure, documenting exposed MariaDB, default credentials, CVE-2024-27102, and…

Nmap NSE scripts to check against log4shell or LogJam vulnerabilities (CVE-2021-44228)

A simple Python CLI to spoof emails.

Enumerate valid users within Microsoft Teams and OneDrive with clean output.

Easy way to brute-force web directory.

Nodesub is a command-line tool for finding subdomains in bug bounty programs

Exploiting misconfigured firebase databases

A fast DOM based XSS vulnerability scanner with simplicity.

Python PoC exploiting CVE-2026-41940, a cPanel & WHM authentication bypass enabling unauthenticated root-level WHM access, with scanning and…

Automate Netlogon CVE-2026-41089 validation and defensive testing through integrated AI security workflows, enabling rapid risk assessment and…