
cve-2026-8697
Detailed CVE-2026-8697 writeup with POC exploit for a login rate-limit bypass on TP-Link Archer C64 routers via a debug SSH service, enabling…

Detailed CVE-2026-8697 writeup with POC exploit for a login rate-limit bypass on TP-Link Archer C64 routers via a debug SSH service, enabling…

Graphical exploit for CVE-2025-3102 in WordPress SureTriggers plugin, enabling unauthenticated admin user creation via API. Includes vulnerable site…

The OSINT project, the main idea of which is to collect all the possible Google dorks search combinations and to find the information about the…

Six Degrees of Domain Admin

Six Degrees of Domain Admin

Optiva-Framework 🔎 Web Application Scanner🕵️

Curated collection of Google dork queries for advanced search engine reconnaissance, uncovering exposed databases, configuration files, admin panels,…

Multi-threaded mass scanner for CVE-2026-8732 in WordPress WP Google Map Pro. Automates nonce extraction, token exploitation, and hidden admin…

Automated Active Directory attack chain from zero-auth to Domain Admin. Chains 25+ techniques including Kerberoast, AD CS ESC1-16, Shadow…

VulnHub DC-1 boot-to-root — exploiting CVE-2018-7600 (Drupalgeddon2) for RCE, extracting DB credentials from settings.php, forging admin password…

A fast and powerfull dashboard (admin) finder

Retrieve and display information about active user sessions on remote computers. No admin privileges required.

An all in one admin panel crawler for pentesters.

Extract ASN information about a given company

Attack Graph Visualizer and Explorer (Active Directory) ...Who's *really* Domain Admin?

Monitoring framework to detect and report newly found subdomains on a specific target using various scanning tools

Let's Snatch The Admin Panel Of Any Website In Seconds.

Automated reconnaissance and exploitation framework for misconfigured Supabase instances. Features schema enumeration, Selenium-based key extraction,…