


PoC and Disclosure for CVE-2023-7231 – Memcached Gopher RCE chain

Delivering PHP RCE (CVE-2024-4577) to the Local Network Servers

Gets plaintext Active Directory credentials if you're on the internal network but outside the AD environment

Automation for internal Windows Penetrationtest / AD-Security

Advanced search in search engines, enables analysis provided to exploit GET / POST capturing emails & urls, with an internal custom validation…

A framework for identifying and launching exploits against internal network hosts. Works via WebRTC IP enumeration combined with WebSockets and…

Advanced search in search engines, enables analysis provided to exploit GET / POST capturing emails & urls, with an internal custom validation…

A GitHub recon/monitoring tool for finding internal leaks belonging to your organisation.

Use Exposed KongAPI to act like a proxy and get metadata urls or internal urls

Internal Hostname Disclosure Vulnerability

The detection of internal security controls at a company

CVE-2022-23779: Internal Hostname Disclosure Vulnerability

Technical audit of Kioptrix Level 1. Focus: Samba 2.2.1a exploitation (CVE-2003-0201), manual enumeration, and internal infrastructure hardening.

Technical Reference to multiple relay techniques

Enumerate usernames on a domain where you have no creds by using SMB Relay with low priv.