
GitHacker
🕷️ A `.git` folder exploiting tool that is able to restore the entire Git repository, including stash, common branches and common tags.

🕷️ A `.git` folder exploiting tool that is able to restore the entire Git repository, including stash, common branches and common tags.

A tool to dump a git repository from a website

CVE-2026-60004 — Gitea/Forgejo Diffpatch Git Hook RCE. Bare clone → post-index-change hook injection. CVSS 9.8 | CWE-94 | Gitea < 1.27.1

CVE-2026-60004 Pre-Auth RCE Exploit — Gitea <= 1.27.0 diffpatch git hook injection (CVSS 9.8)

This script is a tool to recursively download the contents of the '.git' directory from a website. Using Python and libraries like 'requests' and…

Ronin is a Free and Open Source Ruby Toolkit for Security Research and Development. Ronin also allows for the rapid development and distribution of…

Exploit for CVE-2024-32002 targeting Git hook vulnerabilities, enabling remote code execution via crafted repositories during clone operations.

Windows Remote Desktop Services Vulnerability Allows Remote Code Execution

Active Directory information dumper via LDAP

Exploit for CVE-2017-5487 to enumerate WordPress user accounts via the REST API, extracting sensitive information from vulnerable 4.7 installations.

Exploit script for CVE-2024-4577, an argument injection vulnerability in PHP. Scans single or multiple targets to execute arbitrary PHP code via…

🖇 Enumerate git repository URL from list of URL / User / Org. Friendly to pipeline

Proof-of-concept exploit for CVE-2024-32002, a Git vulnerability that enables remote code execution via crafted recursive clone operations.

Proof-of-concept demonstrating exploitation of CVE-2024-32002, a Git submodule vulnerability, for security research and testing.

CVE-2023-23752 Data Extractor

Automated scanner that identifies exposed .git repositories across domains and subdomains, enabling rapid detection of sensitive information leaks…

A PoC exploit for CVE-2021-4191 - GitLab User Enumeration.

Metasploit auxiliary module for exploiting CVE-2023-21839 (WebLogic IIOP RCE) with DNS log verification. Automates remote code execution against…