
WordPressMassExploiter
[discontinued] Mass exploiter of CVE-2015-1579 for WordPress CMS

[discontinued] Mass exploiter of CVE-2015-1579 for WordPress CMS

Unauthenticated RCE scanner for FortiSandbox CVE-2026-39808 with canary-based verification, command execution, and pipeline integration for mass…

This OSINT Notebook provides an overview of the tools, techniques, and resources that I use for a variety of situations when it comes to performing…

Lightweight Python script to test username/password combinations against Zimbra webmail login pages for security assessments and password auditing.

Production-grade MCP server giving Claude 27 security intelligence tools across 21 APIs — CVE lookup, EPSS scoring, CISA KEV, MITRE ATT&CK, Shodan,…

Weape-Wireless-EAP-Extractor

Delivering PHP RCE (CVE-2024-4577) to the Local Network Servers

A modular framework for benchmarking LLMs and agentic strategies on security challenges across HackTheBox, TryHackMe, PortSwigger Labs, Cybench,…

A phone number can reveal whether a device is active, in standby or offline (and more). This PoC demonstrates how delivery receipts + RTT timing leak…

Incredibly fast crawler designed for OSINT.

How to "recover" a CloudPanel server affected by the CVE-2024-44765 vulnerability

how detect CVE-2020-2551 poc exploit python Weblogic RCE with IIOP

Programm to exploit a range of ip adresses

A proof of concept demonstrating how to use the Hinge dating app as a C2.

Hack The CCTV | DVRs; Credentials Exposed | CVE-2018-9995

Tests your WAF with +160 payloads

This project explores whether modern OpenSSH reveals valid usernames through subtle response or timing differences. CVE-2016-6210 user enumeration…

Proof-of-concept exploit for CVE-2023-27350 authentication bypass in PaperCut MF/NG, allowing unauthenticated interaction with vulnerable print…