
enumhandles_BOF
Cobalt Strike BOF for live Windows enumeration of open file handles, revealing which process has locked a target file on disk during…

Cobalt Strike BOF for live Windows enumeration of open file handles, revealing which process has locked a target file on disk during…

Identify privilege escalation paths within and across different clouds

This tool is used to find php info page

Unauthenticated Arbitrary File Read via Absolute Path

An advanced web directory & file scanning tool that will be more powerful than DirBuster, Dirsearch, cansina, and Yu…

Automated data harvesting tool for extracting sensitive information (backups, clones, address books) from web servers via targeted scanning and…

Filechucker filter bypass Proof Of Concept

Bash script to check if a domain or list of domains can be spoofed based in DMARC records

A tool to check a bunch of URLs that contain reflecting params.

Automated exploitation tool for CVE-2021-3019 that reads target IPs from a text file and executes the exploit against HTTP endpoints.

A tool that identifies writable web directories in Apache Tomcat via HTTP PUT method [CVE-2025-24813]

A nice web-crawler written in Bash that will look for login pages/admin-panels for you on any given website.

OWASP Foundation Web Respository

A scripted pipeline of tools to streamline the bug bounty/penetration test reconnaissance phase, so you can focus on chomping bugs.

Java-based scanner that checks IP addresses for CVE-2024-24919 vulnerability, with interactive options to print response data and change target file…

Tool for mass testing ZeroLogon vulnerability CVE-2020-1472

Tool for mass testing ZeroLogon vulnerability CVE-2020-1472

Remote code execution exploit scripts for the WordPress File-Away plugin (CVE-2025-2512 & CVE-2025-2539)