
CVE-2018-8062
Persistent XSS on Comtrend AR-5387un router

Persistent XSS on Comtrend AR-5387un router

Python-Based Pentesting Framework

Azure JWT Token Manipulation Toolset

The plugin, used as a companion for the Discy and Himer themes, does not sanitise and escape a parameter on its reset password form which makes it…

In LetterPress plugin <= 1.2.1 is vulnerable to Html Injection Vulnerability which can futher leads to Open Redirection Vulnerabilty.

PowerShell proof-of-concept for CVE-2023-23397 that exploits Outlook's ReminderSoundFile property to intercept Net-NTLMv2 hashes via SMB or WebDAV…

Crack Interface lockscreen, Metasploit and More Android/IOS Hacking

Multi-purpose WiFi penetration testing toolkit for M5Stack devices. Performs network scanning, evil-twin attacks, deauthentication, captive portal…

The Social-Engineer Toolkit (SET) repository from TrustedSec - All new versions of SET will be deployed here.

Nishang - Offensive PowerShell for red team, penetration testing and offensive security.

Open-source web application security scanner for automated vulnerability detection, manual penetration testing, and API security testing with a…

CamJacking is a tool designed for use in human penetration testing tool. It is intended to simulate potential security threats by testing the…

A tool for generating multiple types of NTLMv2 hash theft files by Jacob Wilkin (Greenwolf)

Repository for CVE-2023-4549 vulnerability.

Educational Android (Termux) toolkit for learning penetration testing, OSINT, social engineering, and network security through hands-on scripts,…

Modlishka. Reverse Proxy.

Documentation and proof-of-concept for CVE-2026-30502, a reflected XSS vulnerability in OpenKM v6.3.12. Includes technical analysis, root cause,…

Simulate realistic phishing campaigns with credential harvesting, email tracking, and landing page cloning for security awareness training and…