
cangibrina
A fast and powerfull dashboard (admin) finder

A fast and powerfull dashboard (admin) finder

Full penetration testing workflow: credential brute force, SSH access and privilege escalation (CVE-2021-4034)

Black-box penetration test against HackSudo Thor : CVE-2014-6271 Shellshock RCE through Apache mod_cgi, chained with sudo misconfiguration and bash…

Advanced network penetration testing toolkit with SSH vulnerability assessment, CVE-2018-15473 exploitation, stealth brute force capabilities, and…

Brute-force scraper for HackerOne disclosed reports via their public API, collecting report IDs, links, titles, and states for security research and…

Detailed CVE-2026-8697 writeup with POC exploit for a login rate-limit bypass on TP-Link Archer C64 routers via a debug SSH service, enabling…

A new generation of tool for discovering subdomains( ip , cdn and so on)


Python 3.5+ DNS asynchronous brute force utility

DNS Recon | Brute Forcer | DNS Zone Transfer | DNS Wild Card Checks | DNS Wild Card Brute Forcer | Email Enumeration | Staff Enumeration |…

Rid_enum is a null session RID cycle attack for brute forcing domain controllers.

Python utility that scrapes PDFs to generate targeted wordlists for brute force, forced browsing, and dictionary attacks, with word frequency,…

Generate BloodHound compatible JSON from logs written by ldapsearch BOF, pyldapsearch and Brute Ratel's LDAP Sentinel

Collection of Brute Ratel C4 BOFs for Windows post-exploitation: process memory access, NetNTLMv2 hash retrieval, contact harvesting, and…

Long Range Pager Systems pagers and coasters URH and YS1 (yardstick one / cc11xx) information and brute force tool


Brute Hikvision CAMS with CVE-2021-36260 Exploit

Proof-of-concept for CVE-2024-53591, demonstrating domain enumeration via brute force on Seclore's login page to identify internal services.