
CVE-2026-61241
Oracle OID LDAP Server Privileges Management Exploit

Oracle OID LDAP Server Privileges Management Exploit

BOF and Python3 implementation of technique to unbind 445/tcp on Windows via SCM interactions

SharpSuccessor is a .NET Proof of Concept (POC) for fully weaponizing Yuval Gordon’s (@YuG0rd) BadSuccessor attack from Akamai.


CVE-2023-7028

Security research on Liferay CE 7.0.3 GA4: pre-auth RCE as root (CVE-2020-7961 class) reproduced end-to-end, plus 16 more findings — 8+ with no known…

Unauthenticated administrator takeover exploit for CVE-2026-66012 using MCP missing authorization to exfiltrate credentials and achieve remote code…


👾 CVE-2026-60206 - Oracle WebLogic SAML Auth Bypass Exploit Framework ⚡Bash & Python versions. Features: --detect safe check, --exploit…

A collection of selenium tests that might aid it takeover of a selenium node

CVE-2026-34197

A drone engineered to autonomously seek out, hack, and wirelessly take full control over any other Parrot or 3DR drones within wireless or flying…


Field-validated offensive security skill pack with 169 techniques for reconnaissance and penetration testing. Covers CORS, SSRF, subdomain takeover,…

This repository provides a high-fidelity technical deconstruction and production-ready exploitation suite for CVE-2019-5736. It demonstrates how a…

PoC for CVE-2022-24342: account takeover via CSRF in GitHub authentication

PoC + vulnerability details for CVE-2022-25262 / JetBrains Hub single-click SAML response takeover

CVE-2021-46067 - In Vehicle Service Management System 1.0 an attacker can steal the cookies leading to Full Account Takeover.