
CVE-2023-23397
Simple PoC of the CVE-2023-23397 vulnerability with the payload sent by email.

Simple PoC of the CVE-2023-23397 vulnerability with the payload sent by email.

SSH-MITM - ssh audits made simple

Unicorn is a simple tool for using a PowerShell downgrade attack and inject shellcode straight into memory. Based on Matthew Graeber's powershell…

A simple python reverse shell written just for fun.

A simple script to generate a hidden url for social engineering.

A simple Python CLI to spoof emails.

Passive Security Tools Fingerprinting Framework

IP obfuscator made to make a malicious ip a bit cuter

A script to configure a TP-Link MR3040 running OpenWRT into a simple, yet powerful penetration-testing "dropbox".

An SSL Enabled Basic Auth Credential Harvester with a Word Document Template URL Injector

Generates obfuscated VBA macros with AV/sandbox evasion for command execution payloads, supporting domain, disk, memory, and process checks.

It is a simple Python Script to hide phishing URL under a normal looking URL (google.com or facebook.com). It can be integrated into Phishing tools…

A proof-of-concept script to conduct a phishing attack abusing Microsoft 365 OAuth Authorization Flow

Proof-of-concept exploit for CVE-2018-25031 (Swagger UI XSS) that exfiltrates authorization codes via crafted configUrl/url parameters.

PoC (Proof of Concept) de la CVE-2024-4367 - Vulnérabilité RCE dans libwebp. Démonstration complète incluant : création de payloads, scénarios…