
Wifi-Dumper
This is an open source tool to dump the wifi profiles and cleartext passwords of the connected access points on the Windows machine. This tool will…

This is an open source tool to dump the wifi profiles and cleartext passwords of the connected access points on the Windows machine. This tool will…

Security Manage Framwork is a security management platform for enterprise intranet, which includes asset management, vulnerability management,…

A small Aggressor script to help Red Teams identify foreign processes on a host machine

Unauthenticated Arbitrary File Read via Absolute Path

Internal Monologue Attack: Retrieving NTLM Hashes without Touching LSASS

Portia aims to automate a number of techniques commonly performed on internal network penetration tests after a low privileged account has been…

Custom PowerShell module to setup an Active Directory lab environment to practice penetration testing.

A critical Server-Side Template Injection (SSTI) vulnerability exists in the X-Trading Portal v1.4.2 dashboard metadata rendering engine. The flaw…

small python3 tool to check common vulnerabilities in SMTP servers

PeekABoo tool can be used during internal penetration testing when a user needs to enable Remote Desktop on the targeted machine. It uses PowerShell…

It is a simple script to automate internal port scanning dueto SSRF in requests-baskets v 1.2.1. this script can also assisst in solving 'SAU'…

DNS rebinding attack tool exploiting multiple A records to bypass same-origin policy and exfiltrate data from internal network services via browser…

This exploit was created to exploit an XXE (XML External Entity). Through it, I read the backend code of the web service and found an endpoint where…

This repository contains a professional bug bounty report demonstrating the successful exploitation of a Blind SSRF vulnerability that reached an…

Tool to discover external and internal network attack surface

Internal penetration testing tool for Linux that can be used to enumerate OS information, domain information, shares, directories, and users through…


Test and exploit STUN/TURN servers for misconfigurations, enabling internal network pivoting via SOCKS proxy, memory leak attacks, and internal port…