

Research tools for MouseJack vulnerabilities in nRF24L01 wireless devices, including device discovery, packet sniffing, network mapping, and firmware…

Passive network security sniffer that analyzes 28 protocols (ARP, STP, OSPF, VLAN, SCADA) to detect vulnerabilities in network equipment without…

UPnP Pentest Toolkit for Windows

Conveigh is a Windows PowerShell LLMNR/NBNS spoofer detection tool

DEPRECATED, bettercap developement moved here: https://github.com/bettercap/bettercap

This tool allows one to recover old RDP (mstsc) session information in the form of broken PNG files. These PNG files allows Red Team member to…

jshunter is a command-line tool designed for analyzing JavaScript files and extracting endpoints. This tool specializes in identifying sensitive…

Asynchronous HTTP content discovery tool with auto-calibration, recursive scanning, and report generation for enumerating hidden web directories and…

Go-based tool to exploit CVE-2013-4786 for dumping IPMI password hashes via RAKP authentication, supporting concurrent scanning of IP ranges or…

CVE-2021-43798 is a high-severity path traversal vulnerability (CVSS 3.1 score: 7.5) affecting Grafana versions 8.0.0-beta1 through 8.3.0. It allows…

Exploit for CVE-2019-17662, a path traversal vulnerability in ThinVNC, demonstrating URL normalization bypass to access arbitrary files on the target…

Nuclei template to detect CVE-2025-25231, a path traversal vulnerability in Omnissa Workspace ONE UEM, allowing access to sensitive files via crafted…

Proof-of-concept exploit for CVE-2024-28995, a directory traversal vulnerability in SolarWinds Serv-U allowing unauthorized read access to sensitive…

Demonstrates CVE-2025-43919, an unauthenticated directory traversal in GNU Mailman 2.1.39 that allows reading arbitrary server files through the…

Directory traversal vulnerability in Cobalt RAQ 4 allows remote attackers to read password-protected files, and possibly files outside the web root,…

Python exploit for CVE-2021-41773 - Apache HTTP Server 2.4.49 Path Traversal vulnerability