
SSRF-Exploit-CVE-2024-27564
Proof-of-concept exploit for CVE-2024-27564, demonstrating SSRF via unvalidated URL parameter in pictureproxy.php. Includes curl-based testing and…

Proof-of-concept exploit for CVE-2024-27564, demonstrating SSRF via unvalidated URL parameter in pictureproxy.php. Includes curl-based testing and…

Un script realizado en python para atumatizar la vulnerabilidad CVE-2024-23897

Proof-of-concept exploit for CVE-2026-41940 targeting cPanel, enabling account enumeration, command execution, and interactive shell access on…

a standalone C-based SQL Injection exploit targeting the CVE‑2025‑6907 vulnerability in the CODE_PROJECT service.

Incident Response Forensic Framework

Take a list of domains, crawl urls and scan for endpoints, secrets, api keys, file extensions, tokens and more

ES File Explorer Open Port Vulnerability - CVE-2019-6447

Fetches javascript file from a list of URLS or subdomains.

A multithreaded, very fast and smart HTTP(S) directory and file bruteforcer written in C on top of libcurl

Proof-of-concept exploit for CVE-2024-24919, an unauthenticated file read in Check Point Security Gateways; scans single or multiple IP targets and…

Popcorn HTB write-up covering advanced directory fuzzing, file upload bypass via magic numbers/extension spoofing using Burp Suite, and privilege…

Super Forms Unauthenticated File Upload RCE | CVSS 9.8

PoC for CVE-2026-65694 — Microweber CMS (<=2.0.20) unauthenticated path traversal → arbitrary file read (.env / secrets)

CVE-2018-18778 - ACME mini_httpd Arbitrary File Read

Full penetration test report against `IP` (Ubuntu VM). Attack chain: directory enumeration → backup file discovery → password cracking → CMS file…

IP CIDRs (presumably as input, maybe command line or file) and checks ports 2083 and 2087 for openness

Simple, fast web crawler designed for easy, quick discovery of endpoints and assets within a web application

Easily turn single threaded command line applications into a fast, multi-threaded application with CIDR and glob support.