
CVE-2020-1472-visualizer
Visualization tool for CVE-2020-1472 (Zerologon) to identify and exploit vulnerable domain controllers in Active Directory environments.

Visualization tool for CVE-2020-1472 (Zerologon) to identify and exploit vulnerable domain controllers in Active Directory environments.

A tool to perform port scanning using vulnerable Request-Baskets

WordPress Simple Link Directory Plugin < 14.8.1 is vulnerable to a high priority Broken Authentication

Proof-of-concept exploit for CVE-2023-27350 authentication bypass in PaperCut MF/NG, allowing unauthenticated interaction with vulnerable print…

Automated checker-exploit for CVE-2017-5689, scanning Intel AMT panels for authentication bypass and reporting vulnerable IPs.

Damn Vulnerable Drone is an intentionally vulnerable drone hacking simulator based on the popular ArduPilot/MAVLink architecture, providing a…

Mass scan IPs for vulnerable services

CVE-2024-6387_Check is a lightweight, efficient tool designed to identify servers running vulnerable versions of OpenSSH

Subdomain brute-forcing tool that enumerates existing subdomains and detects misconfigured cloud-hosted subdomains vulnerable to takeover across AWS,…

Security tool to find potential vulnerable Server Side Request Forgery (SSRF) parameters.

A tool that allows you to search for vulnerable android devices across the world and exploit them.

Quick proof-of-concept for recent CUPS exploit enabling remote code execution via PPD injection and DNS-SD printer discovery. Executes arbitrary…

Heuristic Vulnerable Parameter Scanner

Automated continuous reconnaissance platform that orchestrates a pipeline of recon tools via scheduled or event-driven triggers, helping security…

Proof-of-concept for CVE-2021-21972, a remote code execution vulnerability in vCenter Server 6.5-7.0. Verifies vulnerable paths without exploitation.

FireShodanMap is a Realtime map that integrates Firebase, Google Maps and Shodan. A search is carried out using Shodan searching vulnerable devices…

Proof-of-concept exploit for CVE-2022-22963 (Spring Cloud Function SpEL RCE). Scans URLs, executes commands, and identifies vulnerable targets.

CVE-2026-44578 scanner and exploit tool for SSRF in Next.js WebSocket upgrade handler. Detects vulnerable versions, extracts cloud metadata, and…