
CVE-2026-19478
Proof-of-concept exploit for CVE-2026-19478, an unauthenticated GraphQL injection in GitLab CE/EE allowing arbitrary method invocation and project…

Proof-of-concept exploit for CVE-2026-19478, an unauthenticated GraphQL injection in GitLab CE/EE allowing arbitrary method invocation and project…

.NET tool for installing Windows persistence via registry keys, scheduled tasks, services, WMI events, COM hijacks, and LNK backdoors, supporting…

.NET Project for performing Authenticated Remote Execution

This is a defunct code base. The project is located at: https://github.com/WebGoat

Open-source tool to bypass windows and linux passwords from bootable usb

红/蓝队环境自动化部署工具 | Red/Blue team environment automation deployment tool

A PowerShell script that automates the security assessment of Microsoft 365 environments.

AlienTec-Recon-Tool

Concurrent network scanner for CVE-2015-1635

The SpecterOps project management and reporting engine

This project is used to collect the EXP/POC disclosed on the Internet and provide project support for Heptagram security team.

Dockerized exploit lab and script for CVE-2026-19478, a critical unauthenticated GitLab GraphQL code injection enabling arbitrary Ruby method calls,…

ICT279 Vulnerability Detection and Mitigation Project using CVE-2025-24813 in an Internet Banking Environment

CVE-2023-45612 POC and vulnerable project.

Multi-mode vulnerability scanner for Next.js RCE (CVE-2025-66478/55182) with safe side-channel detection, RCE proof-of-concept, WAF bypass…

Exploit for CVE-2021-43857 in Gerapy v0.9.7, providing a reverse shell via authenticated project creation and command injection.

Pen Test Report Generation and Assessment Collaboration

HomePwn - Swiss Army Knife for Pentesting of IoT Devices