
peeko
peeko – Browser-based XSS C2 for stealthy internal network exploration via infected browser.

peeko – Browser-based XSS C2 for stealthy internal network exploration via infected browser.

AutoPWN Suite is a project for scanning vulnerabilities and exploiting systems automatically.

Reflected XSS vulnerability found in Palo Alto GlobalProtect Gateway & Portal. Attackers can inject malicious scripts via crafted requests.

Recon is a script to perform a full recon on a target with the main tools to search for vulnerabilities. Created based on @ofjaaah and @Jhaddix…

BinGoo! A Linux bash based Bing and Google Dorking Tool

CVE-2023-1671-POC, based on dnslog platform

Weblogic SearchPublicRegistries SSRF(CVE-2014-4210) Exploit Script based on Python3

Kyocera cred dumper based on CVE-2022-1026

Based on CVE-2022-3590, WordPress <= 6.9.1 - Unauthenticated Blind SSRF via XML-RPC Pingback Discovery proof of concept (PoC)

HikVision Auth Bypass CVE, tool is able to extract credentials, and take snapshots based on magic cookie or supplied credentials.

OWASP Web Recon & Directory Discovery Platform

complex webshell manager, quasi-http botnet.

Proof of Concept for CVE-2025-32756 - A critical stack-based buffer overflow vulnerability affecting multiple Fortinet products.

CPH:SEC WAES: Web Auto Enum & Scanner - Auto enums website(s) and dumps files as result

Collaborative application security testing between humans and agents via CLI and MCP

[discontinued] Mass exploiter of CVE-2015-1579 for WordPress CMS

A comprehensive all-in-one Python-based Proof of Concept script to discover and exploit a critical authentication bypass vulnerability…

RedRoot is a Python-based, CLI-driven offensive security framework that brings essential red teaming tools into one unified terminal environment.…