
Kimai-CVE-2026-49865-POC
PoC exploits for CVE-2026-52824 (GHSA-jr9p-4h4j-6c58) — Kimai time-tracking default APP_SECRET authentication bypass affecting versions ≤ 2.57.0

PoC exploits for CVE-2026-52824 (GHSA-jr9p-4h4j-6c58) — Kimai time-tracking default APP_SECRET authentication bypass affecting versions ≤ 2.57.0

Linux Persistence Detection, Hunting and Artifact Collection script

Drop a single binary into a compromised Kubernetes pod and instantly map every realistic attack path to cluster-admin, node escape, secret theft,…

A comprehensive collection of 12 containerized web exploitation challenges covering CVE-2023-25690, WebAuthn bypasses, HTTP/3 smuggling, and advanced…

Docker Enumeration, Escalation of Privileges and Container Escapes (DEEPCE)

Scans project dependencies for dependency confusion vulnerabilities and checks package owner email takeover risks across multiple registries (npm,…

A Bash script and Docker image for Bug Bounty reconnaissance. Intended for headless use.

PoC and Disclosure for CVE-2023-7231 – Memcached Gopher RCE chain

Black-box Kubernetes attack surface discovery tool that probes for unsecured clusters, exposed dashboards, and misconfigurations using…

Legion is an open source, easy-to-use, super-extensible and semi-automated network penetration testing tool that aids in discovery, reconnaissance…

A cross-platform python based utility for information gathering and penetration testing automation!

This tool can be used to enumerate the subdomains associated with a company by aggregating the results of multiple OSINT (Open Source Intelligence)…

Offensive Docker is an image with the more used offensive tools to create an environment easily and quickly to launch assessment to the targets.

Stalk your Friends. Find their Instagram, FB and Twitter Profiles using Image Recognition and Reverse Image Search.

Kubolt utility for scanning public kubernetes clusters

By Kprobe technology Open Source Host-based Intrusion Detection System(HIDS), from E_Bwill.

Extract ASN information about a given company

Pentester-focused Docker registry tool to enumerate and pull images