
CVE-2023-41425-WonderCMS-Authenticated-RCE
Xss injection, WonderCMS 3.2.0 -3.4.2

Xss injection, WonderCMS 3.2.0 -3.4.2

Stored XSS via CSRF in Beetel 777VR1 Router

Roundcube mail server exploit for CVE-2024-37383 (Stored XSS)

MCP server for Google search and page fetching using headless Chromium

A Proof-of-concept repository showing how an untrusted MCP server can steal literally everything...

Feature-rich single-binary file server for red teamers and developers. HTTP/S · WebDAV · FTP/SFTP · SMB · LDAP/S · NTLM hash capture · DNS/SMTP…

An SSL Enabled Basic Auth Credential Harvester with a Word Document Template URL Injector

An NTLM relay tool to the EWS endpoint for on-premise exchange servers. Provides an OWA for hackers.

A python server tool based on flask , this tool can phish some Facebook credentials!

Fully undetected grabber (grabs wallets, passwords, cookies, modifies discord client etc.)

Database Driven DNS Server with a Web UI