
metasploit-framework
Open-source exploitation framework with modular payload, encoder, and auxiliary system for penetration testing, vulnerability validation, and…

Open-source exploitation framework with modular payload, encoder, and auxiliary system for penetration testing, vulnerability validation, and…

Automated Mass Exploiter

Post-exploitation framework for automated network authentication testing, credential harvesting, and lateral movement across Windows/AD environments…

The legacy Exploit Database repository - New repo located at https://gitlab.com/exploit-database/exploitdb-bin-sploits

RCE PoC for Redis 6.2.22, 7.4.9, 8.6.4, 8.8.0, 8.8.1

Advanced Domain Controller attack and credential analysis tool leveraging DonPAPI database

Offensive MSSQL toolkit written in Python, based off SQLRecon

A Cobalt Strike Beacon Object File that exploits the BlueHammer vulnerability that to obtain a copy of the SAM database.

A Beacon Object File suite for Microsoft SQL Server that speaks TDS 7.4 on the wire itself

Dump Kerberos tickets from the KCM database of SSSD

Async BOF to capture KeePass master passwords by detecting and keylogging locked database windows.

MAD-CAT (Meow Attack Data Corruption Automation Tool) is a comprehensive security tool designed to simulate data corruption attacks against multiple…

CVE-2026-23631 (DarkReplica) Redis Exploit

Next.js PoC for CVE-2025-29927

D-RAT [VB.NET]+[MySQL]+[PHP]

macOS TCC bypass exploit leveraging insecure file rename in Music and TV apps to gain Full Disk Access by overwriting the TCC database via a symlink…

Python exploit and detection script for CVE-2024-27348, a remote code execution vulnerability in Apache HugeGraph Server via the Gremlin traversal…

OpenSTAManager v2.9.8 and earlier contain a critical Error-Based SQL Injection vulnerability in the bulk operations handler for the Scadenzario…