
dnsmasq-cve-2026
Automated defect verification tool for 6 dnsmasq CVEs (CVE-2026-2291, 4890, 4891, 4892, 4893, 5172)

Automated defect verification tool for 6 dnsmasq CVEs (CVE-2026-2291, 4890, 4891, 4892, 4893, 5172)

GUI based offensive penetration testing tool (Open Source)

OWASP VBScan is a Black Box vBulletin Vulnerability Scanner

Black Hat Arsenal Tools Official Account

From XSS to RCE 2.75 - Black Hat Europe Arsenal 2017 + Extras

Zero-dollar attack surface management tool

TPM vulnerability checking tool for CVE-2018-6622. This tool will be published at Black Hat Asia 2019 and Black Hat Europe 2019

Black-box test whether an LLM chatbot is vulnerable to markdown/HTML exfil (CVE-2025-32711 class). Spins up a sink, sends payloads, renders in…

Source code for the book "Black Hat Python" by Justin Seitz. The code has been fully converted to Python 3, reformatted to comply with PEP8 standards…

High-performance black-box fuzzer for web applications with built-in payload engine, request verification, tampering, encoding, and advanced…

TCP tunneling over HTTP/HTTPS for web application servers

Black box penetration test — WordPress exploitation, privilege escalation via CVE-2022-0847

A black box, Ruby powered, Joomla vulnerability scanner

The great RSA Attacking Toolkit compiled for Windows

DLL-injectable internal game cheat for Plutonium BO2 zombies

Full black-box penetration test against SecOS:1 (VulnHub) — CSRF exploitation, privilege escalation via CVE-2015-1328 (OverlayFS), post-exploitation

Black-box exploit for CVE-2025-21574 targeting MySQL servers. Automates credential brute-forcing, anonymous access attempts, and triggers server…

CVE-2018-17553 PoC